CVE 7.2 HIGH

Improper Access Control in TeamViewer clients_CVE-2026-23572

7.2 / 10
HIGH
CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H

Description

Improper access control in the TeamViewer Full and Host clients (Windows, macOS, Linux) prior version 15.74.5 allows an authenticated user to bypass additional access controls with “Allow after confirmation” configuration in a remote session. An exploit could result in unauthorized access prior to local confirmation. The user needs to be authenticated for the remote session via ID/password, Session Link, or Easy Access as a prerequisite to exploit this vulnerability.

Basic Information

ID CVE-2026-23572
Source TV
Published Feb 5, 2026 at 11:51

Affected Product

Vendor TeamViewer
Product Remote
Affected Versions TeamViewer Remote 0
TeamViewer Tensor 0
TeamViewer One 0

CWE Classification

References

💭 Join the Security Discussion

🔒 Your email address will not be published. Required fields are marked *

⚠️ Please be respectful and constructive in your comments. Security discussions should remain professional.