Skip to main content

TeamViewer Patches Five Flaws Including a Remote Access Control Bypass That Can Lead to Code Execution (CVE-2026-92370 and Others)

Scope: TeamViewer Full Client and Host for Windows, Linux, and macOS, versions before 15.82 and supported maintenance and legacy releases before their fixed builds

Severity: Amber

TeamViewer published security bulletin TV-2026-1010 urging all users to update as soon as possible, in what BleepingComputer called a rare warning from the company. The most serious issue, CVE-2026-92370, is an improper access control flaw in remote session handling that could let remote attackers perform unauthorized actions leading to remote code execution on a target system. Four other flaws were fixed in the same release: a path traversal (CVE-2026-19743), a heap-based buffer overflow (CVE-2026-92368), a time-of-check to time-of-use race condition (CVE-2026-92369), and an improper path validation issue (CVE-2026-92371). These four can let a local attacker run code as the current user or escalate to SYSTEM or root. TeamViewer says it is not aware of public disclosure or active exploitation. Even so, remote access tools are a favourite of ransomware groups, and TeamViewer is installed across many offices, IT support desks, and personal machines. Organisations must update every TeamViewer installation to version 15.82 or later, including the forgotten copies on old laptops and servers, and should remove installations that are no longer needed.

The Uganda National CERT and Coordination Center (CERT.UG/CC) encourages users and administrators to review the recommendations and apply the necessary updates.