CVE-2026-23572

7.2

TeamViewer · Remote, Tensor, One

Improper access control in TeamViewer clients allows an authenticated user to bypass confirmation requirements, potentially leading to unauthorized access during remote sessions.

Executive summary

A vulnerability in TeamViewer remote access clients allows authenticated users to bypass mandatory confirmation prompts, creating a significant risk of unauthorized session escalation.

Vulnerability

This is an incorrect authorization flaw (CWE-863) where a remote user, already authenticated via standard methods, can bypass the Allow after confirmation security setting. This requires the attacker to have established an initial authenticated session via ID/password, Session Link, or Easy Access.

Business impact

The ability to bypass local confirmation mechanisms undermines the security posture of remote support and management workflows. With a CVSS score of 7.2, this high-severity flaw could allow an attacker to gain elevated control over managed endpoints without the intended oversight of the local user, potentially leading to unauthorized data access or system manipulation.

Remediation

Immediate Action: Update all TeamViewer client installations to version 15.74.5 or the latest available version provided by the vendor.

Proactive Monitoring: Review remote session access logs for unusual activity patterns or connections that occurred without documented user confirmation.

Compensating Controls: Restrict remote access to authorized IP ranges and enforce multi-factor authentication for all TeamViewer accounts to reduce the likelihood of the initial prerequisite authentication being compromised.

Exploitation status

Public Exploit Available: No (exploit_available: false)

Analyst recommendation

Given the high CVSS severity and the nature of remote access software as a primary target for threat actors, prompt remediation is required. Security teams should prioritize updating all TeamViewer endpoints to version 15.74.5 immediately to close the authorization bypass window and restore the integrity of the confirmation-based security controls.

More TeamViewer CVEs

Sources