CVE-2025-44016

Source
https://cve.org/CVERecord?id=CVE-2025-44016
Import Source
https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2025-44016.json
JSON Data
https://api.osv.dev/v1/vulns/CVE-2025-44016
Published
2025-12-11T12:16:25.137Z
Modified
2026-03-13T03:17:47.752895Z
Severity
  • 8.8 (High) CVSS_V3 - CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H CVSS Calculator
Summary
[none]
Details

A vulnerability in TeamViewer DEX Client (former 1E client) - Content Distribution Service (NomadBranch.exe) prior version 25.11 for Windows allows malicious actors to bypass file integrity validation via a crafted request. By providing a valid hash for a malicious file, an attacker can cause the service to incorrectly validate and process the file as trusted, enabling arbitrary code execution under the Nomad Branch service context.

References

Affected packages

Git /

Affected ranges

Database specific

unresolved_ranges
[
    {
        "events": [
            {
                "introduced": "0"
            },
            {
                "fixed": "25.11"
            }
        ]
    }
]
source
"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2025-44016.json"