PT-2026-6552 · Teamviewer · Teamviewer
M.M
+1
·
Published
2026-02-05
·
Updated
2026-02-07
·
CVE-2026-23572
CVSS v3.1
7.2
High
| Vector | AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H |
Name of the Vulnerable Software and Affected Versions
TeamViewer versions prior to 15.74.5
Description
An issue exists in TeamViewer Full and Host clients (Windows, macOS, Linux) where improper access control can be bypassed. An authenticated user can bypass additional access controls configured with the “Allow after confirmation” setting during a remote session. Exploitation requires authentication for the remote session via ID/password, Session Link, or Easy Access. Successful exploitation could lead to unauthorized access before local confirmation.
Recommendations
Update TeamViewer to version 15.74.5 or later.
Fix
Incorrect Authorization
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Teamviewer