CVE-2026-12703: Bypass of 2FA for Connections via Unattended Access in TeamViewer for macOS
TeamViewer Full Client and Host for macOS before version 15.80 contain a business logic error that can allow an authenticated attacker to bypass a configured 2FA for Connections approval flow via Unattended Access and establish a remote connection to an affected macOS host.
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade
TeamViewer Full Client and Host for macOSto a version that resolves this vulnerability.Fixed in 15.80
Event History
Frequently Asked Questions
What is the severity of CVE-2026-12703?
CVE-2026-12703 has a high severity rating of 8.
How do I fix CVE-2026-12703?
To fix CVE-2026-12703, upgrade TeamViewer Full Client and Host for macOS to version 15.80 or later.
What type of attack does CVE-2026-12703 involve?
CVE-2026-12703 involves an authenticated attacker bypassing two-factor authentication during unattended access.
Which software is affected by CVE-2026-12703?
CVE-2026-12703 affects TeamViewer for macOS before version 15.80.
When was CVE-2026-12703 published?
CVE-2026-12703 was published on July 29, 2026.