CVE-2026-19743
7.8
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Summary
Improper path validation in the local IPC service of TeamViewer Full Client and Host on Windows, Linux, and macOS prior to version 15.82 allows a local authenticated user with low privileges to perform arbitrary file writes with elevated privileges (NT AUTHORITY/SYSTEM \ root). By sending crafted IPC commands to the local service daemon, an attacker could manipulate file paths, leading to local privilege escalation.
Affected Software
| Vendor | Product | Version Range | Status |
|---|---|---|---|
| TeamViewer | Full Client | 15.0 < 15.82 | affected |
| TeamViewer | Full Client | 15.64.0 (Legacy Windows 7 & 8) < 15.64.8 (Legacy Windows 7 & 8) | affected |
| TeamViewer | Full Client | 14.7.0 (Windows) < 14.7.48855 (Windows) | affected |
| TeamViewer | Full Client | 13.2.0 (Windows) < 13.2.36230 (Windows) | affected |
| TeamViewer | Full Client | 14.7.0 (Linux) < 14.7.48855 (Linux) | affected |
| TeamViewer | Full Client | 13.2.0 (Linux) < 13.2.153995 (Linux) | affected |
| TeamViewer | Full Client | 14.7.0 (MacOS) < 14.7.48855 (MacOS) | affected |
| TeamViewer | Full Client | 13.2.0 (MacOS) < 13.2.153994 (MacOS) | affected |
| TeamViewer | Host | 15.0 < 15.82 | affected |
| TeamViewer | Host | 15.64.0 (Legacy Windows 7 & 8) < 15.64.8 (Legacy Windows 7 & 8) | affected |
| TeamViewer | Host | 14.7.0 (Windows) < 14.7.48855 (Windows) | affected |
| TeamViewer | Host | 13.2.0 (Windows) < 13.2.36230 (Windows) | affected |
| TeamViewer | Host | 14.7.0 (Linux) < 14.7.48855 (Linux) | affected |
| TeamViewer | Host | 13.2.0 (Linux) < 13.2.153995 (Linux) | affected |
| TeamViewer | Host | 14.7.0 (MacOS) < 14.7.48855 (MacOS) | affected |
| TeamViewer | Host | 13.2.0 (MacOS) < 13.2.153994 (MacOS) | affected |
Weaknesses
- CWE-22: CWE-22 Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')
References
Feedback
Was this page helpful?
Glad to hear it! Please tell us how we can improve.
Sorry to hear that. Please tell us how we can improve.