Description
TeamViewer Full Client and Host for macOS before version 15.80 contain a business logic error that can allow an authenticated attacker to bypass a configured 2FA for Connections approval flow via Unattended Access and establish a remote connection to an affected macOS host.
Published: 2026-07-29
Score: 8 High
EPSS: < 1% Very Low
KEV: No
Impact: n/a
Action: n/a
AI Analysis

Impact

TeamViewer Full Client and Host for macOS versions prior to 15.80 contain a business logic flaw that lets an attacker who has already authenticated exploit the Unattended Access feature to bypass a configured Two‑Factor Authentication (2FA) step in the Connections approval flow. By doing so the attacker can establish a remote session with the host, gaining full control and compromising confidentiality, integrity, and availability of the machine. The weakness falls under CWE‑288, representing an unauthorized use of authentication.

Affected Systems

The vulnerability affects TeamViewer Full Client and Host on macOS released before version 15.80. This includes the TeamViewer ONE, TeamViewer Remote, and TeamViewer Tensor product lines offered by the vendor TeamViewer. Only macOS hosts using these pre‑15.80 builds are impacted.

Risk and Exploitability

The CVSS score of 8 indicates high severity. However, the EPSS score is below 1% and the vulnerability is not listed in the CISA KEV catalog, suggesting a low probability of widespread exploitation at present. The attack requires an authenticated user with access to Unattended Access settings; consequently, the risk is greatest to accounts with privileged permissions or users that have granted themselves unattended rights. Once authenticated, the attacker can immediately bypass 2FA and create a remote session, making mitigation through a patch critical.

Generated by OpenCVE AI on August 3, 2026 at 13:19 UTC.

Remediation

Vendor Solution

Update to the latest version (15.80 or the latest version available)


OpenCVE Recommended Actions

  • Update all TeamViewer Full Client and Host installations on macOS to version 15.80 or newer.
  • Temporarily turn off Unattended Access for any users that do not require it until the patch is applied.
  • Verify that Two‑Factor Authentication is enforced for all user accounts that will use Unattended Access to reduce the attack surface.

Generated by OpenCVE AI on August 3, 2026 at 13:19 UTC.

Tracking

Sign in to view the affected projects.

Advisories

No advisories yet.

History

Thu, 30 Jul 2026 15:45:00 +0000

Type Values Removed Values Added
First Time appeared Teamviewer
Teamviewer one
Teamviewer remote
Teamviewer tensor
Vendors & Products Teamviewer
Teamviewer one
Teamviewer remote
Teamviewer tensor

Wed, 29 Jul 2026 15:30:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'total'}, 'version': '2.0.3'}


Wed, 29 Jul 2026 14:45:00 +0000

Type Values Removed Values Added
Description TeamViewer Full Client and Host for macOS before version 15.80 contain a business logic error that can allow an authenticated attacker to bypass a configured 2FA for Connections approval flow via Unattended Access and establish a remote connection to an affected macOS host.
Title Bypass of 2FA for Connections via Unattended Access in TeamViewer for macOS
Weaknesses CWE-288
References
Metrics cvssV3_1

{'score': 8, 'vector': 'CVSS:3.1/AV:N/AC:H/PR:H/UI:N/S:C/C:H/I:H/A:H'}


cve-icon MITRE

Status: PUBLISHED

Assigner: TV

Published:

Updated: 2026-07-29T15:07:08.712Z

Reserved: 2026-06-19T10:17:46.376Z

Link: CVE-2026-12703

cve-icon Vulnrichment

Updated: 2026-07-29T15:07:05.457Z

cve-icon NVD

Status : Deferred

Published: 2026-07-29T15:16:20.183

Modified: 2026-07-30T16:45:00.353

Link: CVE-2026-12703

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

Updated: 2026-08-03T13:30:04Z

Weaknesses
  • CWE-288

    Authentication Bypass Using an Alternate Path or Channel