8
CVE-2026-12703
- EPSS 0.23%
- Veröffentlicht 29.07.2026 14:13:19
- Zuletzt bearbeitet 30.07.2026 16:45:00
- CVE-Watchlists
- Unerledigt
Bypass of 2FA for Connections via Unattended Access in TeamViewer for macOS
TeamViewer Full Client and Host for macOS before version 15.80 contain a business logic error that can allow an authenticated attacker to bypass a configured 2FA for Connections approval flow via Unattended Access and establish a remote connection to an affected macOS host.
Daten sind bereitgestellt durch das CVE Programm von einer CVE Numbering Authority (CNA) (Unstrukturiert).
HerstellerTeamViewer
≫
Produkt
Remote
Default Statusunaffected
Version
15.00
Version <
15.80
Status
affected
HerstellerTeamViewer
≫
Produkt
Tensor
Default Statusunaffected
Version
15.00
Version <
15.80
Status
affected
HerstellerTeamViewer
≫
Produkt
ONE
Default Statusunaffected
Version
15.00
Version <
15.80
Status
affected
VulnDex Vulnerability Enrichment
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 0.23% | 0.145 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| psirt@teamviewer.com | 8 | 1.3 | 6 |
CVSS:3.1/AV:N/AC:H/PR:H/UI:N/S:C/C:H/I:H/A:H
|
CWE-288 Authentication Bypass Using an Alternate Path or Channel
The product requires authentication, but the product has an alternate path or channel that does not require authentication.
https://www.teamviewer.com/en/resources/trust-center/security-bulletins/tv-2026-1007/