ZDI-24-1289: TeamViewer Missing Authentication Local Privilege Escalation Vulnerability
This vulnerability allows local attackers to escalate privileges on affected installations of TeamViewer. An attacker must first obtain the ability to execute low-privileged code on the target system in order to exploit this vulnerability. The ZDI has assigned a CVSS rating of 8.8. The following CVEs are assigned: CVE-2024-7479.
Affected Software
Event History
Frequently Asked Questions
What is the severity of ZDI-24-1289?
The severity of ZDI-24-1289 is rated at 8.8, indicating a high risk of privilege escalation.
Who is affected by ZDI-24-1289?
ZDI-24-1289 affects installations of TeamViewer that allow local attackers to escalate privileges.
How do I fix ZDI-24-1289?
To fix ZDI-24-1289, you should update TeamViewer to the latest version that addresses this vulnerability.
What type of vulnerability is ZDI-24-1289?
ZDI-24-1289 is a privilege escalation vulnerability that requires low-privileged code execution for exploitation.
Can ZDI-24-1289 be exploited remotely?
No, ZDI-24-1289 cannot be exploited remotely as it requires local access to the target system.