Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-rjwh-hm8r-vg38

Опубликовано: 24 мая 2022
Источник: github
Github: Не прошло ревью
CVSS3: 6.5

Описание

An issue was discovered in the Chat functionality of the TeamViewer desktop application 14.3.4730 on Windows. (The vendor states that it was later fixed.) Upon login, every communication is saved within Windows main memory. When a user logs out or deletes conversation history (but does not exit the application), this data is not wiped from main memory, and therefore could be read by a local user with the same or greater privileges.

An issue was discovered in the Chat functionality of the TeamViewer desktop application 14.3.4730 on Windows. (The vendor states that it was later fixed.) Upon login, every communication is saved within Windows main memory. When a user logs out or deletes conversation history (but does not exit the application), this data is not wiped from main memory, and therefore could be read by a local user with the same or greater privileges.

EPSS

Процентиль: 60%
0.00405
Низкий

6.5 Medium

CVSS3

Дефекты

CWE-200
CWE-212

Связанные уязвимости

CVSS3: 6.5
nvd
около 6 лет назад

An issue was discovered in the Chat functionality of the TeamViewer desktop application 14.3.4730 on Windows. (The vendor states that it was later fixed.) Upon login, every communication is saved within Windows main memory. When a user logs out or deletes conversation history (but does not exit the application), this data is not wiped from main memory, and therefore could be read by a local user with the same or greater privileges.

EPSS

Процентиль: 60%
0.00405
Низкий

6.5 Medium

CVSS3

Дефекты

CWE-200
CWE-212