logo

AnyDesk 0-Day Vulnerability Lets Attackers Trigger Denial-of-Service

ID: 5e89bb04-bb1e-5f1d-88c3-9c6eba5db276

STIX ID: report--5e89bb04-bb1e-5f1d-88c3-9c6eba5db276

Feed Name: cybersecurityNews.com

Threat Score
50/100

Date Published: 2026-07-16

Date Updated: 2026-07-17

Author: Guru Baran

...
...

A newly disclosed zero-day (CVE-2026-15682) in AnyDesk’s Send Support Information feature allows an attacker with local low-privilege code execution to create junctions (reparse points) that cause arbitrary file writes outside intended locations and trigger a denial-of-service; organizations are advised to monitor AnyDesk advisories, restrict local code execution, and detect unusual junction/reparse point creation until a patch is available.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.