TeamViewer Remote Full Client
cpe:2.3:a:teamviewer:teamviewer:*:*:*:*:*:*:*
- < 15.69
A race condition vulnerability has been identified in the directory validation logic of the TeamViewer Full Client and Host for Windows, prior to version 15.69. This vulnerability allows a local non-administrative user to create arbitrary files with SYSTEM privileges, potentially causing a denial-of-service condition. The issue arises from symbolic link manipulation during the directory verification process.
Exploitation of this vulnerability can lead to arbitrary file creation with SYSTEM privileges, causing a local denial-of-service condition.
Users are advised to update to TeamViewer version 15.69 or the latest available version.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.