HomeTeamviewerCVE-2025-44016

CVE-2025-44016

HIGH
8.8CVSS
Published: 2025-12-11
Updated: 2026-01-14
AI Analysis

Description

A vulnerability in TeamViewer DEX Client (former 1E client) - Content Distribution Service (NomadBranch.exe) prior version 25.11 for Windows allows malicious actors to bypass file integrity validation via a crafted request. By providing a valid hash for a malicious file, an attacker can cause the service to incorrectly validate and process the file as trusted, enabling arbitrary code execution under the Nomad Branch service context.

CVSS Metrics

Vector
CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Attack Vector
adjacent network
Complexity
low
Privileges
none
User Action
none
Scope
unchanged
Confidentiality
high
Integrity
high
Availability
high
Weaknesses
CWE-20NVD-CWE-noinfo

Metadata

Primary Vendor
TEAMVIEWER
Published
12/11/2025
Last Modified
1/14/2026
Source
NIST NVD
Note: Verify all details with official vendor sources before applying patches.

Affected Products

teamviewer : digital_employee_experience

AI-Powered Remediation

Generate remediation guidance or a C-suite brief for this vulnerability.

Executive Intelligence Brief