ZDI-CAN-24623: ZDI-24-1289: TeamViewer Missing Authentication Local Privilege Escalation Vulnerability
This vulnerability allows local attackers to escalate privileges on affected installations of TeamViewer. An attacker must first obtain the ability to execute low-privileged code on the target system in order to exploit this vulnerability. The ZDI has assigned a CVSS rating of 8.8. The following CVEs are assigned: CVE-2024-7479.
Affected Software
Event History
Frequently Asked Questions
What is the severity of ZDI-CAN-24623?
ZDI-CAN-24623 has been assigned a CVSS rating of 8.8, indicating high severity.
How can I fix ZDI-CAN-24623?
To mitigate ZDI-CAN-24623, update TeamViewer to the latest version as recommended by the vendor.
What type of attack does ZDI-CAN-24623 enable?
ZDI-CAN-24623 allows local attackers to escalate privileges on affected installations of TeamViewer.
What prerequisites are needed to exploit ZDI-CAN-24623?
An attacker must first obtain the ability to execute low-privileged code on the target system to exploit ZDI-CAN-24623.
Which software is affected by ZDI-CAN-24623?
ZDI-CAN-24623 affects installations of TeamViewer.