Junglewise Threat Intelligence

CVE-2026-16444: TeamViewer Desktop Clients path traversal in file transfer

CVE-2026-16444 · Severity: high · CVSS 7.5 · Published 2026-08-26

Vendors: Teamviewer.

Executive brief

TeamViewer is a remote desktop application that allows authorized users to access and control computers remotely. A vulnerability in versions prior to 15.81.5 allows an authenticated remote user to write files to arbitrary locations on the targeted system through file transfer or clipboard mechanisms, potentially enabling code execution with the victim's privileges.

Technical details

The vulnerability is a path traversal flaw (CWE-73) in TeamViewer Desktop Clients where filenames supplied by a remote session participant are not properly sanitized before file creation. An authenticated attacker with an active remote session can exploit this via file transfer or virtual file clipboard mechanisms to write files to unintended directories on the local file system. The attack requires an established remote session (authenticated), but no further user interaction beyond the attacker's ability to initiate file operations. Successful exploitation allows arbitrary file write and potentially arbitrary code execution with the privileges of the affected user. The vulnerability is patched in version 15.81.5 and corresponding legacy branch versions (14.7.48833/48838, 13.2.36229/153978/153981).

Affected products

  • TeamViewer Full Client < 15.81.5 (current); < 15.64.7 (Windows 7 & 8); < 14.7.48833 (Windows v14) / < 14.7.48838 (Linux/macOS v14); < 13.2.36229 (Windows v13) / < 13.2.153978 (Linux v13) / < 13.2.153981 (macOS v13)
  • TeamViewer Host < 15.81.5 (current); < 15.64.7 (Windows 7 & 8); < 14.7.48833 (Windows v14) / < 14.7.48838 (Linux/macOS v14); < 13.2.36229 (Windows v13) / < 13.2.153978 (Linux v13) / < 13.2.153981 (macOS v13)
  • TeamViewer QuickSupport < 15.81.5 (current); < 15.64.7 (Windows 7 & 8); < 14.7.48833 (Windows v14) / < 14.7.48838 (Linux/macOS v14); < 13.2.36229 (Windows v13) / < 13.2.153978 (Linux v13) / < 13.2.153981 (macOS v13)
  • TeamViewer Portable < 15.64.7 (Windows 7 & 8)
  • TeamViewer Remote affected versions not separately specified
  • TeamViewer Tensor affected versions not separately specified
  • TeamViewer ONE affected versions not separately specified

Timeline

  • 2026-08-26: disclosed
  • 2026-08-26: patched: Version 15.81.5 and corresponding legacy branch versions released

References

Related threats