CVE-2016-20094

AnyDesk 2.5.0 contains an unquoted service path vulnerability that allows local users to execute arbitrary code with SYSTEM privileges by exploiting the service installation. Attackers can insert malicious executables in the system root path that execute with elevated privileges during application startup or system reboot.
Configurations

Configuration 1 (hide)

cpe:2.3:a:anydesk:anydesk:2.5.0:*:*:*:*:*:*:*

History

No history.

Information

Published : 2026-06-19 15:16

Updated : 2026-06-26 13:02


NVD link : CVE-2016-20094

Mitre link : CVE-2016-20094

CVE.ORG link : CVE-2016-20094


JSON object : View

Products Affected

anydesk

  • anydesk
CWE
CWE-428

Unquoted Search Path or Element