← Back

CVE-2026-23570

nvd nist
Published: Jan 29, 2026Modified: Jun 17, 2026

JSON object

Loading...
6.5
Vector
CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:N
Exploitability: 2.8 / Impact: 3.6
Source: psirt@teamviewer.com (Secondary)

Description

A missing validation of a user-controlled value in the TeamViewer DEX Client (former 1E Client) - Content Distribution Service (NomadBranch.exe) prior version 26.1 for Windows allows an adjacent network attacker to tamper with log timestamps via crafted UDP Sync command. This could result in forged or nonsensical datetime prefixes and compromising log integrity and forensic correlation.

Affected (1)

1 product
Digital Employee Experience
Configuration A
1 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
Before 26.1
Running on/withPlatform Versions
Microsoft
Windows
All versions

References (1)

Timeline

No history available yet.