Denial of Service Vulnerability in TeamViewer DEX Client on Windows
CVE-2025-12687

6.5MEDIUM

Key Information:

Vendor

Teamviewer

Status
Vendor
CVE Published:
11 December 2025

What is CVE-2025-12687?

A vulnerability exists in the TeamViewer DEX Client, specifically within the Content Distribution Service (NomadBranch.exe), for Windows versions prior to 25.11. This flaw enables attackers to execute crafted commands that lead to application crashes, resulting in denial of service and service termination. Organizations utilizing this software should take immediate action to upgrade to the secured version to mitigate potential risks.

Affected Version(s)

DEX Windows 0 < 25.11.0.29

DEX Windows 0 <= 25.9.0.46

DEX Windows 0 <= 25.5.053

References

CVSS V3.1

Score:
6.5
Severity:
MEDIUM
Confidentiality:
None
Integrity:
None
Availability:
None
Attack Vector:
Adjacent Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

Credit

Threat Hunt Team of Bank of America
.