Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1359 CNY

100%

TeamViewer — Vulnerabilities & Security Advisories 49

Browse all 49 CVE security advisories affecting TeamViewer. AI-powered Chinese analysis, POCs, and references for each vulnerability.

TeamViewer provides remote connectivity software primarily used for technical support, desktop sharing, and online meetings. Its architecture, which facilitates direct access to remote systems, has historically attracted significant security scrutiny, resulting in thirty-nine recorded Common Vulnerabilities and Exposures. Analysis of these flaws reveals a pattern of critical issues, including remote code execution, cross-site scripting, and privilege escalation vulnerabilities that often stem from improper input validation and authentication bypasses. Notably, the platform has been targeted in sophisticated supply chain attacks, where threat actors compromised the software update mechanism to distribute malware to millions of users. These incidents highlight the inherent risks associated with trusted remote administration tools. Consequently, organizations must implement strict access controls and multi-factor authentication to mitigate the potential impact of such exploits, ensuring that the convenience of remote access does not compromise overall system integrity.

CVE ID Title CVSS Severity Published
CVE-2026-92370 Remote Session Access Control Bypass Leading to Remote Code Execution — Full Client CWE-284 8.8 High 2026-09-29
CVE-2026-92371 Local Privilege Escalation via Improper Link Resolution in Cloud Session Recording — Full Client CWE-59 7.0 High 2026-09-29
CVE-2026-92368 Heap-Based Buffer Overflow in TeamViewer Session Recording Playback Leads to Remote Code Execution — Full Client CWE-122 7.8 High 2026-09-29
CVE-2026-92369 Time-of-check Time-of-use (TOCTOU) Race Condition in TeamViewer Windows Installer Rollback Mechanism Leads to Local Privilege Escalation — Full Client CWE-367 7.3 High 2026-09-29
CVE-2026-19743 Improper Limitation of a Pathname to a Restricted Directory (Path Traversal) in TeamViewer Desktop Clients — Full Client CWE-22 7.8 High 2026-09-29
CVE-2026-19042 Command Injection in TeamViewer Desktop Client for Linux through Chat Link Handling — Full Client CWE-78 8.8 High 2026-08-26
CVE-2026-16444 Improper Validation of File Paths in TeamViewer Desktop Clients — Full Client, Host, QuickSupport & Portable CWE-73 7.5 High 2026-08-26
CVE-2026-12703 Bypass of 2FA for Connections via Unattended Access in TeamViewer for macOS — Remote CWE-288 8.0 High 2026-07-29
CVE-2026-8381 Broken Access Control in TeamViewer DEX Platform (On Premises) — DEX (On-premises) CWE-862 5.4 Medium 2026-05-22
CVE-2026-2695 Lack of Server-side validation in Instruction Input in TeamViewer DEX Platform (On-Premises) — DEX (On-Premises) CWE-20 6.3 Medium 2026-05-13
CVE-2026-23572 Improper Access Control in TeamViewer clients — Remote CWE-863 7.2 High 2026-02-05
CVE-2026-23570 Log timestamp tampering vulnerability in Content Distribution Service — DEX CWE-20 6.5 Medium 2026-01-29
CVE-2026-23569 Out-of-bounds read vulnerability in Content Distribution Service — DEX CWE-125 6.5 Medium 2026-01-29
CVE-2026-23568 Out-of-bounds read vulnerability in Content Distribution Service — DEX CWE-125 5.4 Medium 2026-01-29
CVE-2026-23567 Integer underflow in Content Distribution Service UDP handler — DEX CWE-122 6.5 Medium 2026-01-29
CVE-2026-23566 Log Injection in Content Distribution Service UDP Handler — DEX CWE-20 6.5 Medium 2026-01-29
CVE-2026-23565 Denial-of-Service in Content Distribution Service — DEX CWE-476 6.5 Medium 2026-01-29
CVE-2026-23564 Transmission of Unencrypted Data in Content Distribution Service — DEX CWE-319 6.5 Medium 2026-01-29
CVE-2026-23571 Command Injection in 1E-Nomad-RunPkgStatusRequest Instruction in TeamViewer DEX — DEX CWE-20 6.8 Medium 2026-01-29
CVE-2026-23563 Privilege escalation in TeamViewer DEX via DeleteFileByPath instruction — DEX CWE-59 5.7 Medium 2026-01-29
CVE-2025-64995 Privilege Escalation via Process Hijacking in 1E-Exchange-NomadClientHealth-ConfigureGeneralSetting instruction — DEX CWE-427 6.5 Medium 2025-12-11
CVE-2025-64994 Privilege Escalation via Uncontrolled Search Path in 1E-Nomad-SetWorkRate instruction — DEX CWE-427 6.5 Medium 2025-12-11
CVE-2025-64993 Command Injection in 1E-ConfigMgrConsoleExtensions Instructions — DEX CWE-20 6.8 Medium 2025-12-11
CVE-2025-64992 Command Injection in 1E-Nomad-PauseNomadJobQueue Instruction — DEX CWE-20 6.8 Medium 2025-12-11
CVE-2025-64991 Command Injection in 1E-PatchInsights-Deploy Instruction — DEX CWE-20 6.8 Medium 2025-12-11
CVE-2025-64990 Command Injection in 1E-Explorer-TachyonCore-LogoffUser Instruction — DEX CWE-20 6.8 Medium 2025-12-11
CVE-2025-64989 Command Injection in 1E-Explorer-TachyonCore-FindFileBySizeAndHash Instruction — DEX CWE-20 7.2 High 2025-12-11
CVE-2025-64988 Command Injection in 1E-Nomad-GetCmContentLocations Instruction — DEX CWE-20 7.2 High 2025-12-11
CVE-2025-64987 Command Injection in 1E-Explorer-TachyonCore-CheckSimpleIoC Instruction — DEX CWE-20 7.2 High 2025-12-11
CVE-2025-64986 Command Injection in 1E-Explorer-TachyonCore-DevicesListeningOnAPort Instruction — DEX CWE-20 7.2 High 2025-12-11

This page lists every published CVE security advisory associated with TeamViewer. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.