
Cloud Vulnerability DB
A community-led vulnerabilities database
CVE-2026-15681 is a link-following denial-of-service vulnerability in AnyDesk that allows local attackers with low-privileged code execution to create a denial-of-service condition by abusing junction handling in screen recording file processing. The vulnerability was reported to AnyDesk on March 25, 2025, and publicly disclosed on July 13, 2026, after the vendor failed to provide a fix during a 16-month coordinated disclosure period, resulting in ZDI publishing it as a zero-day advisory. The affected version is AnyDesk 9.0.4. It carries a CVSS v3.0 base score of 4.7 (Medium) per ZDI, while NVD assigns a CVSS v3.1 score of 5.5 (Medium) (ZDI Advisory, GitHub Advisory).
The root cause is classified as CWE-59 (Improper Link Resolution Before File Access — 'Link Following'), specifically within AnyDesk's handling of screen recording files (GitHub Advisory). An attacker who has already obtained low-privileged local code execution can create a Windows junction (directory junction point) targeting a path that AnyDesk's service processes during screen recording operations; the service then follows the junction and creates arbitrary files at the attacker-controlled destination (ZDI Advisory). This attack requires no user interaction and has low attack complexity once local access is established, though it does require an initial foothold on the target system. The vulnerability was originally tracked as ZDI-CAN-26591 and was discovered by researcher Giuliano Sanfins from SiDi (ZDI Advisory).
Successful exploitation results in a denial-of-service condition on the affected system, with high availability impact and no confidentiality or integrity impact (ZDI Advisory, GitHub Advisory). By leveraging the junction abuse to create arbitrary files, an attacker can disrupt AnyDesk service operation or cause broader system instability, rendering the remote access functionality unavailable. The scope is limited to the local system and does not enable lateral movement or data exfiltration based on current analysis.
There is no public proof-of-concept exploit code and no evidence of in-the-wild exploitation at the time of disclosure (ZDI Advisory). The vulnerability is not listed in the CISA Known Exploited Vulnerabilities (KEV) catalog, and NVD's SSVC assessment confirms exploitation is currently "none" with the attack not being automatable. The EPSS score is approximately 0.10%, indicating a low near-term exploitation probability (GitHub Advisory). Notably, this was published as a zero-day advisory because AnyDesk's security team indicated the issue was "out of their scope" after 16 months of coordinated disclosure attempts (ZDI Advisory).
mklink /J (Windows built-in) or a custom script, create a directory junction at the expected screen recording file path that redirects to a sensitive or critical system directory (e.g., a system directory where arbitrary file creation would cause instability).anydesk.exe) writing files to unusual or unexpected filesystem locations outside its normal operational paths.mklink or junction-creation utilities by low-privileged user accounts on systems running AnyDesk.ZDI notes that given the nature of the vulnerability, the primary mitigation is to restrict interaction with the AnyDesk product, as no vendor patch was available at the time of disclosure (ZDI Advisory). Organizations should restrict low-privileged code execution capabilities on systems running AnyDesk 9.0.4 to reduce the attack surface. Implementing file system monitoring to detect suspicious junction creation activities in AnyDesk-related directories is also recommended. Users should monitor for any updated AnyDesk releases that address this issue, as the vendor had not provided a fix after 16 months of coordinated disclosure.
The vulnerability attracted attention primarily due to AnyDesk's prolonged non-response during the 16-month coordinated disclosure period, with ZDI ultimately publishing it as a zero-day advisory after the vendor's support team stated the issue was "out of their scope" (ZDI Advisory). Security media outlet VPNcentral covered the disclosure alongside a related AnyDesk flaw, framing both as zero-day vulnerabilities enabling local denial-of-service attacks. A blog post on deafnews.it specifically highlighted the vendor's 16-month non-response as a notable failure in coordinated disclosure. Social media discussion on Mastodon referenced the vulnerability in the context of AnyDesk's disclosure handling.
Source: This report was generated using AI
Free Vulnerability Assessment
Evaluate your cloud security practices across 9 security domains to benchmark your risk level and identify gaps in your defenses.
Get a personalized demo
"Best User Experience I have ever seen, provides full visibility to cloud workloads."
"Wiz provides a single pane of glass to see what is going on in our cloud environments."
"We know that if Wiz identifies something as critical, it actually is."