TeamViewer Full Client and Host access control bypass (CVE-2026-92370)
Vulnerability
Summary
Hide ▲
Show ▼
TeamViewer disclosed CVE-2026-92370, a remote session access control bypass in TeamViewer Full Client and Host that can enable remote code execution on Windows, Linux, and macOS systems. The flaw stems from an improper access control weakness in the remote-access software. TeamViewer says the issue is fixed in version 15.82 and that it has no evidence of public exploit code or active exploitation.
Related Happenings
TeamViewer urgent update advisory for Full Client and Host
Advisory/Mitigation
H score34
First: 30.09.2026 15:25
Last: 30.09.2026 15:25
Sources 1
How related:
TeamViewer strongly recommends that all users update to the latest available version as soon as possible,
About this happening:
TeamViewer urged users to update to version 15.82 immediately after releasing fixes for multiple high-severity vulnerabilities in TeamViewer Full Client and Host. The...
TeamViewer urgent update advisory for Full Client and Host
Advisory/MitigationHow related: TeamViewer strongly recommends that all users update to the latest available version as soon as possible,
About this happening: TeamViewer urged users to update to version 15.82 immediately after releasing fixes for multiple high-severity vulnerabilities in TeamViewer Full Client and Host. The...
BeyondTrust Remote Support and Privileged Remote Access CVE-2026-1731 active exploitation wave
Exploitation Wave
H score76
First: 12.02.2026 23:34
Last: 12.02.2026 23:34
Sources 1
About this happening:
CVE-2026-1731 in BeyondTrust Remote Support and Privileged Remote Access is now seeing first in-the-wild exploitation, putting exposed appliances at risk of remote...
BeyondTrust Remote Support and Privileged Remote Access CVE-2026-1731 active exploitation wave
Exploitation WaveAbout this happening: CVE-2026-1731 in BeyondTrust Remote Support and Privileged Remote Access is now seeing first in-the-wild exploitation, putting exposed appliances at risk of remote...
CISA KEV remediation deadline for SolarWinds WHD CVE-2025-40551
Public Sector Action
H score53
First: 04.02.2026 07:50
Last: 04.02.2026 07:50
Sources 1
About this happening:
CISA added CVE-2025-40551 in SolarWinds Web Help Desk to the KEV catalog and imposed federal remediation deadlines, turning a newly exploited flaw into a compl...
CISA KEV remediation deadline for SolarWinds WHD CVE-2025-40551
Public Sector ActionAbout this happening: CISA added CVE-2025-40551 in SolarWinds Web Help Desk to the KEV catalog and imposed federal remediation deadlines, turning a newly exploited flaw into a compl...
Timeline
-
30.09.2026 15:25 1 articles · 2h ago
TeamViewer warns customers to patch remote code execution flaws in Full Client and Host
Initial DisclosureTeamViewer warned customers to update TeamViewer Full Client and Host for Windows, Linux, and macOS after identifying CVE-2026-92370, a remote session access control bypass caused by an improper access control weakness that could let remote threat actors perform unauthorized actions and reach remote code execution on targeted systems. The company also identified four additional vulnerabilities in the same software line, including path traversal, a heap-based buffer overflow, a TOCTOU race condition, and an improper path validation issue.
Show sources
- TeamViewer urges users to patch severe flaws “as soon as possible” — www.bleepingcomputer.com — 30.09.2026 15:25
-
30.09.2026 15:25 2 articles · 2h ago
TeamViewer releases version 15.82 to fix TeamViewer Full Client and Host vulnerabilities
Mitigation Patch UpdateTeamViewer released security updates that resolve CVE-2026-92370 and four additional vulnerabilities affecting TeamViewer Full Client and Host and related services, and it urged users to move to TeamViewer version 15.82 or supported fixed releases. The company said it was not aware of public disclosure or active exploitation in the wild.
Show sources
- TeamViewer urges users to patch severe flaws “as soon as possible” — www.bleepingcomputer.com — 30.09.2026 15:25
- TeamViewer urges users to patch severe flaws “as soon as possible” — www.bleepingcomputer.com — 30.09.2026 15:25