CVE-2025-44016

A vulnerability in TeamViewer DEX Client (former 1E client) - Content Distribution Service (NomadBranch.exe) prior version 25.11 for Windows allows malicious actors to bypass file integrity validation via a crafted request. By providing a valid hash for a malicious file, an attacker can cause the service to incorrectly validate and process the file as trusted, enabling arbitrary code execution under the Nomad Branch service context.
Configurations

Configuration 1 (hide)

AND
cpe:2.3:a:teamviewer:digital_employee_experience:*:*:*:*:*:*:*:*
cpe:2.3:o:microsoft:windows:-:*:*:*:*:*:*:*

History

No history.

Information

Published : 2025-12-11 12:16

Updated : 2026-01-14 19:57


NVD link : CVE-2025-44016

Mitre link : CVE-2025-44016

CVE.ORG link : CVE-2025-44016


JSON object : View

Products Affected

microsoft

  • windows

teamviewer

  • digital_employee_experience
CWE
CWE-20

Improper Input Validation

NVD-CWE-noinfo