ZDI-24-1290: TeamViewer Missing Authentication Local Privilege Escalation Vulnerability
This vulnerability allows local attackers to escalate privileges on affected installations of TeamViewer. An attacker must first obtain the ability to execute low-privileged code on the target system in order to exploit this vulnerability. The ZDI has assigned a CVSS rating of 8.8. The following CVEs are assigned: CVE-2024-7481.
Affected Software
Event History
Frequently Asked Questions
What is the severity of ZDI-24-1290?
The severity of ZDI-24-1290 is rated 8.8 on the CVSS scale, indicating high risk.
How do I fix ZDI-24-1290?
To fix ZDI-24-1290, update TeamViewer to the latest version that addresses this vulnerability.
Who is affected by ZDI-24-1290?
ZDI-24-1290 affects local installations of TeamViewer on systems where attackers can execute low-privileged code.
What type of vulnerability is ZDI-24-1290?
ZDI-24-1290 is a privilege escalation vulnerability that allows attackers to gain higher access on affected systems.
Can ZDI-24-1290 be exploited remotely?
No, an attacker must first have local access to exploit ZDI-24-1290.