6.4
CVE-2024-2451
- EPSS 0.02%
- Veröffentlicht 28.05.2024 15:15:09
- Zuletzt bearbeitet 21.11.2024 09:09:46
- Quelle psirt@teamviewer.com
- CVE-Watchlists
- Unerledigt
Improper fingerprint validation in the TeamViewer Client (Full & Host) prior Version 15.54 for Windows and macOS allows an attacker with administrative user rights to further elevate privileges via executable sideloading.
Verknüpft mit AI von unstrukturierten Daten zu bestehenden CPE der NVD
Daten sind bereitgestellt durch das CVE Programm von Authorized Data Publishers (ADP) (Unstrukturiert)
Herstellerteamviewer
≫
Produkt
remote
Default Statusunknown
Version <
15.54
Version
15.48
Status
affected
Version <
15.54
Version
15.51
Status
affected
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 0.02% | 0.04 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| psirt@teamviewer.com | 6.4 | 0.5 | 5.9 |
CVSS:3.1/AV:L/AC:H/PR:H/UI:N/S:U/C:H/I:H/A:H
|
CWE-347 Improper Verification of Cryptographic Signature
The product does not verify, or incorrectly verifies, the cryptographic signature for data.