Home
MEDIUM: 4.3 CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:NDefault status
unaffected
Any version before 25.11.0.29
affected
Description
A vulnerability in TeamViewer DEX Client (former 1E Client) - Content Distribution Service (NomadBranch.exe) prior version 25.11 for Windows allows malicious actors to coerce the service into transmitting data to an arbitrary internal IP address, potentially leaking sensitive information.
Problem types
CWE-20 Improper Input Validation
Product status
Any version before 25.11.0.29
Credits
Threat Hunt Team of Bank of America
References
www.teamviewer.com/...enter/security-bulletins/tv-2025-1005/
Data based on CVE®. Copyright © 1999-2025, The MITRE Corporation. All rights reserved.