CVE-2025-44016: TeamViewer Digital Employee Experience
High severity, CVSS 8.8. EPSS: 0.3% chance of exploitation in the next 30 days.
A vulnerability in TeamViewer DEX Client (former 1E client) - Content Distribution Service (NomadBranch.exe) prior version 25.11 for Windows allows malicious actors to bypass file integrity validation via a crafted request. By providing a valid hash for a malicious file, an attacker can cause the service to incorrectly validate and process the file as trusted, enabling arbitrary code execution under the Nomad Branch service context.
Affected products
- TeamViewer Digital Employee Experience: before 25.11 (fixed in 25.11)
Published 2025-12-11. Last modified 2026-10-08.