AnyDesk Link Following Vulnerability Permits Sensitive Information Disclosure
AnyDesk has a vulnerability that allows local attackers to get sensitive information. To exploit this, an attacker needs to run low-privileged code on the system. The issue is with how background images are handled. By making a junction, an attacker can read any files. This can help get stored credentials, causing more risks. This was known as ZDI-CAN-23940.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
anydesk anydesk |