Description
AnyDesk before 6.2.6 and 6.3.x before 6.3.3 allows a local user to obtain administrator privileges by using the Open Chat Log feature to launch a privileged Notepad process that can launch other applications.
Analysis and contextual insights are available on OpenCVE Cloud.
Remediation
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2021-28010 | AnyDesk before 6.2.6 and 6.3.x before 6.3.3 allows a local user to obtain administrator privileges by using the Open Chat Log feature to launch a privileged Notepad process that can launch other applications. |
References
| Link | Providers |
|---|---|
| https://anydesk.com/cve/2021-40854/ |
|
History
No history.
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2024-08-04T02:51:07.507Z
Reserved: 2021-09-10T00:00:00.000Z
Link: CVE-2021-40854
No data.
Status : Modified
Published: 2021-10-14T05:15:07.643
Modified: 2024-11-21T06:24:56.240
Link: CVE-2021-40854
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD