CVE-2026-15681: (0Day) AnyDesk Screen Recording Link Following Denial-of-Service Vulnerability
AnyDesk Screen Recording Link Following Denial-of-Service Vulnerability. This vulnerability allows local attackers to create a denial-of-service condition on affected installations of AnyDesk. An attacker must first obtain the ability to execute low-privileged code on the target system in order to exploit this vulnerability.
The specific flaw exists within the handling of screen recording files. By creating a junction, an attacker can abuse the service to create arbitrary files. An attacker can leverage this vulnerability to create a denial-of-service condition on the system. Was ZDI-CAN-26591.
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Compensating control
Mitigate the AnyDesk Screen Recording Link Following Denial-of-Service vulnerability (ZDI-CAN-26591) by preventing untrusted or low-privileged users from executing code on affected systems, since exploitation requires low-privileged code execution.
Event History
Frequently Asked Questions
What is the severity of CVE-2026-15681?
The severity of CVE-2026-15681 is medium with a score of 4.7.
What does CVE-2026-15681 affect?
CVE-2026-15681 affects installations of AnyDesk, specifically related to screen recording link functionality.
What kind of attack does CVE-2026-15681 facilitate?
CVE-2026-15681 allows local attackers to create a denial-of-service condition on affected AnyDesk installations.
How can an attacker exploit CVE-2026-15681?
An attacker must first obtain the ability to execute low-privileged code on the target system to exploit CVE-2026-15681.
Is there any impact on confidentiality or integrity in CVE-2026-15681?
CVE-2026-15681 does not impact confidentiality or integrity, but it does affect availability due to denial-of-service.