CVE-2024-7479
CVSS 3.1 Score 8.8 of 10 (high)
Details
Published Sep 25, 2024
Updated: Sep 26, 2024
CWE ID 347
Summary
CVE-2024-7479 is a vulnerability affecting TeamViewer Remote Clients for Windows prior to version 15.58.4. The issue lies in the TeamViewer_service.exe component's handling of cryptographic signatures during VPN driver installation. An attacker with local, unprivileged access can exploit this flaw and elevate their privileges, enabling them to install malicious drivers on the targeted system. This vulnerability poses a significant risk and underscores the importance of keeping software up to date to protect against potential privilege escalation attacks.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.