{"id":"CVE-2026-19743","title":"Improper path validation in the local IPC service of TeamViewer Full Client and Host on Windows, Linux, and macOS prior to version 15.82 allows a local authenticated user with low privileges to perform arbitrary file writes with elevated…","summary":"Improper path validation in the local IPC service of TeamViewer Full Client and Host on Windows, Linux, and macOS prior to version 15.82 allows a local authenticated user with low privileges to perform arbitrary file writes with elevated…","severity":"high","cvss":7.8,"cvssVector":"CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H","cwe":["CWE-22"],"vendor":"TeamViewer","product":"Full Client","affected":["full_client >= 15.0 < 15.82","full_client >= 15.64.0 (Legacy Windows 7 & 8) < 15.64.8 (Legacy Windows 7 & 8)","full_client >= 14.7.0 (Windows) < 14.7.48855 (Windows)","full_client >= 13.2.0 (Windows) < 13.2.36230 (Windows)","full_client >= 14.7.0 (Linux) < 14.7.48855 (Linux)","full_client >= 13.2.0 (Linux) < 13.2.153995 (Linux)","full_client >= 14.7.0 (MacOS) < 14.7.48855 (MacOS)","full_client >= 13.2.0 (MacOS) < 13.2.153994 (MacOS)","Host >= 15.0 < 15.82","Host >= 15.64.0 (Legacy Windows 7 & 8) < 15.64.8 (Legacy Windows 7 & 8)","Host >= 14.7.0 (Windows) < 14.7.48855 (Windows)","Host >= 13.2.0 (Windows) < 13.2.36230 (Windows)","Host >= 14.7.0 (Linux) < 14.7.48855 (Linux)","Host >= 13.2.0 (Linux) < 13.2.153995 (Linux)","Host >= 14.7.0 (MacOS) < 14.7.48855 (MacOS)","Host >= 13.2.0 (MacOS) < 13.2.153994 (MacOS)"],"published":"2026-09-29","updated":"2026-09-29","sourceUpdated":"2026-09-29T16:17:07.177","source":"NVD","sourceUrl":"https://nvd.nist.gov/vuln/detail/CVE-2026-19743","references":[{"url":"https://www.teamviewer.com/en/resources/trust-center/security-bulletins/tv-2026-1010/","label":"psirt@teamviewer.com"}],"tags":["nvd","cve.org"],"ingestedAt":"2026-09-29T16:39:33.264Z","slug":"CVE-2026-19743","body":"## Overview\n\nImproper path validation in the local IPC service of TeamViewer Full Client and Host on Windows, Linux, and macOS prior to version 15.82 allows a local authenticated user with low privileges to perform arbitrary file writes with elevated privileges (NT AUTHORITY/SYSTEM \\ root). By sending crafted IPC commands to the local service daemon, an attacker could manipulate file paths, leading to local privilege escalation.\n\n## Remediation\n\nRefer to the linked advisories for vendor-supplied fixes and affected version ranges.","depth":"twilight","depthScore":43,"depthScoreParts":{"impact":42.9,"likelihood":0,"exploitation":0,"ransomware":0},"changes":[]}