← back
CVE-2026-12703highCWE-288

Bypass of 2FA for Connections via Unattended Access in TeamViewer for macOS

21Vexday Risk Score

No sign of exploitation. No public exploitation artifact known so far.

ssvc Trackcvss 8epss 0.2%
exploitation probability
0.2%top 86% of all CVEs
observed exploitation
nono source reports it
TeamViewer Full Client and Host for macOS before version 15.80 contain a business logic error that can allow an authenticated attacker to bypass a configured 2FA for Connections approval flow via Unattended Access and establish a remote connection to an affected macOS host.
CVSS:3.1/AV:N/AC:H/PR:H/UI:N/S:C/C:H/I:H/A:H