bleeping-computer · Crawled Oct 1, 2026

TeamViewer urges users to patch severe flaws “as soon as possible”

2 Actors
Read original article ↗

AI Summary

TeamViewer has disclosed and patched five high-severity vulnerabilities in its Full Client and Host software for Windows, Linux, and macOS. The most critical flaw, CVE-2026-92370, is a remote session access control bypass that could allow unauthorized remote code execution. The other vulnerabilities include a path traversal, a heap-based buffer overflow, a TOCTOU race condition, and improper path validation, all of which could enable local attackers to achieve remote code execution or privilege escalation. Although there is no evidence of active exploitation or public exploit code, TeamViewer strongly urges users to update to version 15.82 to mitigate potential risks.

AI-extracted · verify before operational use

Extracted Entities 2 found

MITRE ATT&CK TTPs 47 techniques

T1003 OS Credential Dumping · Credential Access T1021 Remote Services · Lateral Movement T1021.001 Remote Desktop Protocol · Lateral Movement T1027 Obfuscated Files or Information · Defense Evasion T1036 Masquerading · Defense Evasion T1036.005 Match Legitimate Name or Location · Defense Evasion T1053.005 Scheduled Task · Execution T1055 Process Injection · Defense Evasion T1055.001 Dynamic-link Library Injection · Defense Evasion T1056.001 Keylogging · Collection T1059 Command and Scripting Interpreter · Execution T1059.001 PowerShell · Execution T1059.003 Windows Command Shell · Execution T1068 Exploitation for Privilege Escalation · Privilege Escalation T1070.004 File Deletion · Defense Evasion T1070.006 Timestomp · Defense Evasion T1071.001 Web Protocols · Command And Control T1078 Valid Accounts · Defense Evasion T1082 System Information Discovery · Discovery T1083 File and Directory Discovery · Discovery T1090 Proxy · Command And Control T1098 Account Manipulation · Persistence T1105 Ingress Tool Transfer · Command And Control T1110 Brute Force · Credential Access T1114 Email Collection · Collection T1133 External Remote Services · Persistence T1136.001 Local Account · Persistence T1185 Browser Session Hijacking · Collection T1195 Supply Chain Compromise · Initial Access T1204.002 Malicious File · Execution T1222.002 Linux and Mac File and Directory Permissions Modification · Defense Evasion T1486 Data Encrypted for Impact · Impact T1495 Firmware Corruption · Impact T1555 Credentials from Password Stores · Credential Access T1558 Steal or Forge Kerberos Tickets · Credential Access T1566 Phishing · Initial Access T1566.001 Spearphishing Attachment · Initial Access T1570 Lateral Tool Transfer · Lateral Movement T1586 Compromise Accounts · Resource Development T1588 Obtain Capabilities · Resource Development T1595.002 Vulnerability Scanning · Reconnaissance T1659 Content Injection · Initial Access T1056.002 GUI Input Capture · Collection T1071.004 DNS · Command And Control T1480 Execution Guardrails · Defense Evasion T1556 Modify Authentication Process · Credential Access T1684.001 T1684.001