CVE-2025-44002: Arbitrary File Creation via Symbolic Link leading to Denial-of-Service
Race Condition in the Directory Validation Logic in the TeamViewer Full Client and Host prior version 15.69 on Windows allows a local non-admin user to create arbitrary files with SYSTEM privileges, potentially leading to a denial-of-service condition, via symbolic link manipulation during directory verification.
Affected Software
Remediation
Information
Event History
Frequently Asked Questions
What is the severity of CVE-2025-44002?
CVE-2025-44002 is classified as a high severity vulnerability that allows local non-admin users to exploit race conditions.
How do I fix CVE-2025-44002?
To fix CVE-2025-44002, update TeamViewer to version 15.69 or later immediately.
Who is affected by CVE-2025-44002?
CVE-2025-44002 affects users of TeamViewer Full Client and Host prior to version 15.69 on Windows.
What can attackers achieve through CVE-2025-44002?
Attackers can create arbitrary files with SYSTEM privileges, potentially leading to a denial-of-service condition.
What type of vulnerability is CVE-2025-44002?
CVE-2025-44002 is a race condition vulnerability in the directory validation logic.