CVE-2020-35483: High severity anydesk anydesk vulnerability
AnyDesk before 6.1.0 on Windows, when run in portable mode on a system where the attacker has write access to the application directory, allows this attacker to compromise a local user account via a read-only setting for a Trojan horse gcapi.dll file.
Affected Software
Event History
Frequently Asked Questions
What is CVE-2020-35483?
CVE-2020-35483 is a vulnerability in AnyDesk before version 6.1.0 on Windows that allows an attacker with write access to the application directory to compromise a local user account.
How does CVE-2020-35483 affect AnyDesk?
CVE-2020-35483 affects AnyDesk before version 6.1.0 on Windows when run in portable mode.
What is the severity of CVE-2020-35483?
The severity of CVE-2020-35483 is high, with a CVSS score of 7.8.
How can an attacker exploit CVE-2020-35483?
An attacker can exploit CVE-2020-35483 by adding a Trojan horse gcapi.dll file with read-only setting to the AnyDesk application directory.
How can I fix CVE-2020-35483?
To fix CVE-2020-35483, update AnyDesk to version 6.1.0 or later.