CVE-2018-14333: Infoleak
TeamViewer through 13.1.1548 stores a password in Unicode format within TeamViewer.exe process memory between "[00 88] and "[00 00 00]" delimiters, which might make it easier for attackers to obtain sensitive information by leveraging an unattended workstation on which TeamViewer has disconnected but remains running.
Affected Software
Event History
Frequently Asked Questions
What is CVE-2018-14333?
CVE-2018-14333 is a vulnerability in TeamViewer versions up to 13.1.1548 that stores a password in Unicode format within the TeamViewer.exe process memory, making it easier for attackers to obtain sensitive information.
How does CVE-2018-14333 impact TeamViewer?
CVE-2018-14333 allows attackers to obtain sensitive information, such as passwords, by leveraging an unattended workstation where TeamViewer has disconnected.
What is the severity of CVE-2018-14333?
The severity of CVE-2018-14333 is high, with a CVSS score of 8.1.
How can I fix CVE-2018-14333?
To fix CVE-2018-14333, users should update their TeamViewer software to a version higher than 13.1.1548.
Where can I find more information about CVE-2018-14333?
You can find more information about CVE-2018-14333 on the GitHub page: https://github.com/vah13/extractTVpasswords