Lucene search

K
nvd[email protected]NVD:CVE-2023-0837
HistoryJun 14, 2023 - 8:15 a.m.

CVE-2023-0837

2023-06-1408:15:08
CWE-285
web.nvd.nist.gov
improper authorization
unprivileged user
local device settings
configuration change
teamviewer remote

5.5 Medium

CVSS3

Attack Vector

LOCAL

Attack Complexity

LOW

Privileges Required

LOW

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

NONE

Integrity Impact

HIGH

Availability Impact

NONE

CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:H/A:N

0.0004 Low

EPSS

Percentile

9.0%

An improper authorization check of local device settings in TeamViewer Remote between version 15.41 and 15.42.7 for Windows and macOS allows an unprivileged user to change basic local device settings even though the options were locked. This can result in unwanted changes to the configuration.

Affected configurations

NVD
Node
teamviewerremoteRange15.4115.42.8
AND
applemacosMatch-
OR
microsoftwindowsMatch-

5.5 Medium

CVSS3

Attack Vector

LOCAL

Attack Complexity

LOW

Privileges Required

LOW

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

NONE

Integrity Impact

HIGH

Availability Impact

NONE

CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:H/A:N

0.0004 Low

EPSS

Percentile

9.0%

Related for NVD:CVE-2023-0837