High severity7.1NVD Advisory· Published Jul 18, 2022· Updated Jul 9, 2026
CVE-2022-32450
CVE-2022-32450
Description
AnyDesk 7.0.9 allows a local user to gain SYSTEM privileges via a symbolic link because the user can write to their own %APPDATA% folder (used for ad.trace and chat) but the product runs as SYSTEM when writing chat-room data there.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
3Patches
Vulnerability mechanics
References
3- packetstormsecurity.com/files/167608/AnyDesk-7.0.9-Arbitrary-File-Write-Denial-Of-Service.htmlnvdExploitThird Party AdvisoryVDB Entry
- seclists.org/fulldisclosure/2022/Jul/9nvdExploitMailing ListThird Party Advisory
- seclists.org/fulldisclosure/2022/Jun/44nvdExploitMailing ListThird Party Advisory
News mentions
0No linked articles in our index yet.