CVE-2025-64994
6.7
Vector
CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H
Exploitability: 0.8 / Impact: 5.9
Source: NVD
Description
A privilege escalation vulnerability was discovered in TeamViewer DEX (former 1E DEX), specifically within the 1E-Nomad-SetWorkRate instruction prior V17.1. The improper handling of executable search paths could allow local attackers with write access to a PATH directory on a device to escalate privileges and execute arbitrary code as SYSTEM.
Affected (1)
Products: Teamviewer: Digital Employee Experience
Configuration A
| Vulnerable Software | Affected Versions |
|---|---|
| Before 17.1 |
References (1)
Source: psirt@teamviewer.com
Vendor Advisory
Timeline
No history available yet.