AnyDesk 0-Day Vulnerability Lets Attackers Trigger Denial-of-Service
ID: 5e89bb04-bb1e-5f1d-88c3-9c6eba5db276
STIX ID: report--5e89bb04-bb1e-5f1d-88c3-9c6eba5db276
Feed Name: cybersecurityNews.com
Threat Score
A newly disclosed zero-day (CVE-2026-15682) in AnyDesk’s Send Support Information feature allows an attacker with local low-privilege code execution to create junctions (reparse points) that cause arbitrary file writes outside intended locations and trigger a denial-of-service; organizations are advised to monitor AnyDesk advisories, restrict local code execution, and detect unusual junction/reparse point creation until a patch is available.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
