CVE-2025-46266

Name
CVE-2025-46266
Description
A vulnerability in TeamViewer DEX Client (former 1E Client) - Content Distribution Service (NomadBranch.exe) prior version 25.11 for Windows allows malicious actors to coerce the service into transmitting data to an arbitrary internal IP address, potentially leaking sensitive information.
NVD Severity
unknown
Other trackers
Mailing lists
Exploits
Forges
GitHub (code, issues), Aports (code, issues)

References

Type URI
psirt@teamviewer.com https://www.teamviewer.com/en/resources/trust-center/security-bulletins/tv-2025-1005/

Match rules

CPE URI Source package Min version Max version
dex == 0 == None
cpe:2.3:a:teamviewer:digital_employee_experience:*:*:*:*:*:*:*:* digital_employee_experience >= None < 25.11

Vulnerable and fixed packages

Source package Branch Version Maintainer Status
dex edge-community 0.10.1-r0 Anjandev Momi <anjan@momi.ca> possibly vulnerable
dex 3.23-community 0.10.1-r0 Anjandev Momi <anjan@momi.ca> possibly vulnerable
dex 3.22-community 0.10.1-r0 Anjandev Momi <anjan@momi.ca> possibly vulnerable