6.4
CVE-2024-2451
- EPSS 0.11%
- Veröffentlicht 28.05.2024 15:15:09
- Zuletzt bearbeitet 15.04.2026 00:35:42
- Quelle psirt@teamviewer.com
- CVE-Watchlists
- Unerledigt
Improper fingerprint validation in the TeamViewer Client
Improper fingerprint validation in the TeamViewer Client (Full & Host) prior Version 15.54 for Windows and macOS allows an attacker with administrative user rights to further elevate privileges via executable sideloading.
Daten sind bereitgestellt durch das CVE Programm von Authorized Data Publishers (ADP) (Unstrukturiert)
Herstellerteamviewer
≫
Produkt
remote
Default Statusunknown
Version
15.48
Version <
15.54
Status
affected
Version
15.51
Version <
15.54
Status
affected
VulnDex Vulnerability Enrichment
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 0.11% | 0.013 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| psirt@teamviewer.com | 6.4 | 0.5 | 5.9 |
CVSS:3.1/AV:L/AC:H/PR:H/UI:N/S:U/C:H/I:H/A:H
|
CWE-347 Improper Verification of Cryptographic Signature
The product does not verify, or incorrectly verifies, the cryptographic signature for data.
https://www.teamviewer.com/en/resources/trust-center/security-bulletins/tv-2024-1004/