CVE-2025-46266

A vulnerability in TeamViewer DEX Client (former 1E Client) - Content Distribution Service (NomadBranch.exe) prior version 25.11 for Windows allows malicious actors to coerce the service into transmitting data to an arbitrary internal IP address, potentially leaking sensitive information.
Configurations

Configuration 1 (hide)

AND
cpe:2.3:a:teamviewer:digital_employee_experience:*:*:*:*:*:*:*:*
cpe:2.3:o:microsoft:windows:-:*:*:*:*:*:*:*

History

14 Jan 2026, 19:57

Type Values Removed Values Added
CWE NVD-CWE-noinfo
First Time Teamviewer digital Employee Experience
Teamviewer
Microsoft
Microsoft windows
CPE cpe:2.3:o:microsoft:windows:-:*:*:*:*:*:*:*
cpe:2.3:a:teamviewer:digital_employee_experience:*:*:*:*:*:*:*:*
References () https://www.teamviewer.com/en/resources/trust-center/security-bulletins/tv-2025-1005/ - () https://www.teamviewer.com/en/resources/trust-center/security-bulletins/tv-2025-1005/ - Vendor Advisory

11 Dec 2025, 12:16

Type Values Removed Values Added
New CVE

Information

Published : 2025-12-11 12:16

Updated : 2026-01-14 19:57


NVD link : CVE-2025-46266

Mitre link : CVE-2025-46266

CVE.ORG link : CVE-2025-46266


JSON object : View

Products Affected

teamviewer

  • digital_employee_experience

microsoft

  • windows
CWE
CWE-20

Improper Input Validation

NVD-CWE-noinfo