CVE-2025-67813 – Quest Desktop Authority Privilege Escalation Vulnerability

“A weakness in a trusted administration tool could allow attackers to quietly elevate privileges and gain greater control of managed systems.”

This patch addresses a medium-severity vulnerability (CVE-2025-67813) affecting Quest Desktop Authority, an enterprise endpoint management and privilege administration platform. The issue stems from improper validation during certain privileged operations within the management environment.

An attacker with existing access to the environment could exploit the weakness to escalate privileges and perform actions with elevated system rights. Successful exploitation may allow unauthorized changes to administrative settings or manipulation of systems managed through Desktop Authority. CVE-2025-67813 carries a CVSS v3.1 score of 5.3 (Medium).

Quest released updates that strengthen privilege validation and correct the logic used when processing administrative operations. Systems running vulnerable versions remain exposed until the patched version of Desktop Authority is installed.

Patch this CVE on all your endpoints in under 5 minutes. First 200 endpoints are free forever, scale as needed.