PatchSiren

Anydesk CVE debriefs

These pages are published after PatchSiren validates generated defensive summaries against stored public CVE and source evidence.

HIGH Anydesk CVE published 2026-06-19

CVE-2016-20094

CVE-2016-20094 is a HIGH-severity vulnerability (CVSS Score: 8.5) affecting AnyDesk 2.5.0. The issue is an unquoted service path vulnerability, which allows local users to execute arbitrary code with SYSTEM privileges by inserting malicious executables in the system root path. This can occur during application startup or system reboot. Defenders should prioritize patching or mitigating this vulnerability [truncated]