VYPR
High severity7.5NVD Advisory· Published Nov 6, 2025· Updated Jun 17, 2026

CVE-2025-27916

CVE-2025-27916

Description

An issue was discovered in AnyDesk for Windows before 9.0.6 and AnyDesk for Android before 8.0.0. When the connection between two clients is established via an IP address, it is possible to manipulate the data and spoof the AnyDesk ID.

Affected products

3
  • Anydesk/Anydesk3 versions
    cpe:2.3:a:anydesk:anydesk:*:*:*:*:*:windows:*:*+ 2 more
    • cpe:2.3:a:anydesk:anydesk:*:*:*:*:*:windows:*:*range: <=9.0.4
    • (no CPE)
    • (no CPE)range: <9.0.6 (Windows), <8.0.0 (Android)

Patches

Vulnerability mechanics

References

2

News mentions

0

No linked articles in our index yet.