CVE-2022-50931

HIGH

TeamSpeak 3.5.6 - Local Privilege Escalation

Title source: llm

Description

TeamSpeak 3.5.6 contains an insecure file permissions vulnerability that allows local attackers to replace executable files with malicious binaries. Attackers can replace system executables like ts3client_win32.exe with custom files to potentially gain SYSTEM or Administrator-level access.

Exploits (1)

exploitdb WORKING POC
by Aryan Chehreghani · textlocalwindows
https://www.exploit-db.com/exploits/50743

Scores

CVSS v3 7.8
EPSS 0.0002
EPSS Percentile 4.4%
Attack Vector LOCAL
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

Details

CWE
CWE-732
Status published
Products (1)
teamspeak/teamspeak 3.5.6
Published Jan 13, 2026
Tracked Since Feb 18, 2026