Vulnerability Description
A privilege escalation vulnerability was discovered in TeamViewer DEX (former 1E DEX), specifically within the 1E-Exchange-NomadClientHealth-ConfigureGeneralSetting instruction prior V3.4. Improper protection of the execution path on the local device allows attackers, with local access to the device during execution, to hijack the process and execute arbitrary code with SYSTEM privileges.
CVSS Score
MEDIUM
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Teamviewer | Digital Employee Experience | < 3.4 |
Related Weaknesses (CWE)
References
FAQ
What is CVE-2025-64995?
CVE-2025-64995 is a vulnerability with a CVSS score of 6.5 (MEDIUM). A privilege escalation vulnerability was discovered in TeamViewer DEX (former 1E DEX), specifically within the 1E-Exchange-NomadClientHealth-ConfigureGeneralSetting instruction prior V3.4. Improper pr...
How severe is CVE-2025-64995?
CVE-2025-64995 has been rated MEDIUM with a CVSS base score of 6.5/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2025-64995?
Check the references section above for vendor advisories and patch information. Affected products include: Teamviewer Digital Employee Experience.