An issue in the native clients for Amazon WorkSpaces (when running Amazon DCV protocol), Amazon AppStream 2.0, and Amazon DCV Clients may allow an attacker to access remote sessions via man-in-the-middle.
Metrics
Affected Vendors & Products
References
History
Tue, 14 Oct 2025 19:00:00 +0000
Wed, 12 Feb 2025 21:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Wed, 29 Jan 2025 18:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | An issue in the native clients for Amazon WorkSpaces, Amazon AppStream 2.0, and Amazon DCV Clients may allow an attacker to access remote sessions via man-in-the-middle. | An issue in the native clients for Amazon WorkSpaces (when running Amazon DCV protocol), Amazon AppStream 2.0, and Amazon DCV Clients may allow an attacker to access remote sessions via man-in-the-middle. |
| Title | Issue affecting Amazon WorkSpaces, Amazon AppStream 2.0, and Amazon DCV clients | Issue affecting Amazon WorkSpaces (when running Amazon DCV protocol), Amazon AppStream 2.0, and Amazon DCV clients |
Wed, 15 Jan 2025 18:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | An issue in the native clients for Amazon WorkSpaces, Amazon AppStream 2.0, and Amazon DCV Clients may allow an attacker to access remote sessions via man-in-the-middle. | |
| Title | Issue affecting Amazon WorkSpaces, Amazon AppStream 2.0, and Amazon DCV clients | |
| Weaknesses | CWE-295 | |
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: AMZN
Published: 2025-01-15T18:20:33.468Z
Updated: 2025-10-14T18:54:46.403Z
Reserved: 2025-01-15T17:34:09.099Z
Link: CVE-2025-0500
Updated: 2025-02-12T20:25:44.777Z
Status : Awaiting Analysis
Published: 2025-01-15T19:15:27.003
Modified: 2025-10-14T19:15:37.370
Link: CVE-2025-0500
No data.