Vulnerabilities > Anydesk > Anydesk > 6.0.8

DATE CVE VULNERABILITY TITLE RISK
2021-10-14 CVE-2021-40854 Improper Privilege Management vulnerability in Anydesk
AnyDesk before 6.2.6 and 6.3.x before 6.3.3 allows a local user to obtain administrator privileges by using the Open Chat Log feature to launch a privileged Notepad process that can launch other applications.
local
low complexity
anydesk CWE-269
4.6
2021-01-11 CVE-2020-35483 Uncontrolled Search Path Element vulnerability in Anydesk 5.4.2/6.0.8
AnyDesk before 6.1.0 on Windows, when run in portable mode on a system where the attacker has write access to the application directory, allows this attacker to compromise a local user account via a read-only setting for a Trojan horse gcapi.dll file.
4.4