Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-739j-qj6v-fq3v

Опубликовано: 26 июн. 2025
Источник: github
Github: Не прошло ревью
CVSS3: 7

Описание

Incorrect Permission Assignment for Critical Resource in the TeamViewer Client (Full and Host) of TeamViewer Remote and Tensor prior Version 15.67 on Windows allows a local unprivileged user to trigger arbitrary file deletion with SYSTEM privileges via leveraging the MSI rollback mechanism. The vulnerability only applies to the Remote Management features: Backup, Monitoring, and Patch Management.

Incorrect Permission Assignment for Critical Resource in the TeamViewer Client (Full and Host) of TeamViewer Remote and Tensor prior Version 15.67 on Windows allows a local unprivileged user to trigger arbitrary file deletion with SYSTEM privileges via leveraging the MSI rollback mechanism. The vulnerability only applies to the Remote Management features: Backup, Monitoring, and Patch Management.

EPSS

Процентиль: 6%
0.0016
Низкий

7 High

CVSS3

Дефекты

CWE-732

Связанные уязвимости

CVSS3: 7
nvd
около 1 года назад

Incorrect Permission Assignment for Critical Resource in the TeamViewer Client (Full and Host) of TeamViewer Remote and Tensor prior Version 15.67 on Windows allows a local unprivileged user to trigger arbitrary file deletion with SYSTEM privileges via leveraging the MSI rollback mechanism. The vulnerability only applies to the Remote Management features: Backup, Monitoring, and Patch Management.

CVSS3: 7
fstec
около 1 года назад

Уязвимость программного обеспечения TeamViewer Remote Full Client, связанная с неправильным назначением разрешений для файлов, позволяющая нарушителю удалить произвольные файлы

EPSS

Процентиль: 6%
0.0016
Низкий

7 High

CVSS3

Дефекты

CWE-732