Broken Access Control in TeamViewer DEX Platform Affecting Multiple Versions
CVE-2026-8381
5.4MEDIUM
What is CVE-2026-8381?
A broken access control vulnerability exists in the TeamViewer DEX Platform (On-Premises) versions prior to 9.2. This issue arises from inadequate enforcement of authorization checks in certain backend API endpoints. As a result, authenticated users with limited privileges can exploit this weakness to gain unauthorized access to resources and perform operations reserved for higher-privileged roles. Such exploitation can allow a low-privileged user to access sensitive functionalities and administrative tools, potentially leading to severe security breaches.
Affected Version(s)
DEX (On-premises) 0 < 9.2
