CVE-2024-0819

Improper initialization of default settings in TeamViewer Remote Client prior version 15.51.5 for Windows, Linux and macOS, allow a low privileged user to elevate privileges by changing the personal password setting and establishing a remote connection to a logged-in admin account.
Configurations

Configuration 1 (hide)

AND
cpe:2.3:a:teamviewer:remote:*:*:*:*:*:*:*:*
OR cpe:2.3:o:apple:macos:-:*:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:-:*:*:*:*:*:*:*
cpe:2.3:o:microsoft:windows:-:*:*:*:*:*:*:*

History

03 Mar 2025, 22:42

Type Values Removed Values Added
References () https://www.teamviewer.com/en/trust-center/security-bulletins/tv-2024-1001/ - () https://www.teamviewer.com/en/trust-center/security-bulletins/tv-2024-1001/ - Vendor Advisory
First Time Microsoft windows
Apple macos
Teamviewer remote
Linux
Linux linux Kernel
Teamviewer
Apple
Microsoft
CPE cpe:2.3:a:teamviewer:remote:*:*:*:*:*:*:*:*
cpe:2.3:o:microsoft:windows:-:*:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:-:*:*:*:*:*:*:*
cpe:2.3:o:apple:macos:-:*:*:*:*:*:*:*
CWE NVD-CWE-noinfo

21 Nov 2024, 08:47

Type Values Removed Values Added
References () https://www.teamviewer.com/en/trust-center/security-bulletins/tv-2024-1001/ - () https://www.teamviewer.com/en/trust-center/security-bulletins/tv-2024-1001/ -
Summary
  • (es) La inicialización incorrecta de la configuración predeterminada en TeamViewer Remote Client, versión anterior a 15.51.5 para Windows, Linux y macOS, permite a un usuario con pocos privilegios elevar sus privilegios cambiando la configuración de la contraseña personal y estableciendo una conexión remota a una cuenta de administrador que haya iniciado sesión.

27 Feb 2024, 14:19

Type Values Removed Values Added
New CVE

Information

Published : 2024-02-27 14:15

Updated : 2025-03-03 22:42


NVD link : CVE-2024-0819

Mitre link : CVE-2024-0819

CVE.ORG link : CVE-2024-0819


JSON object : View

Products Affected

teamviewer

  • remote

linux

  • linux_kernel

apple

  • macos

microsoft

  • windows
CWE
CWE-269

Improper Privilege Management

NVD-CWE-noinfo