Privilege Escalation Vulnerability in TeamViewer DEX Software
CVE-2025-64994
6.5MEDIUM
What is CVE-2025-64994?
A privilege escalation vulnerability has been identified in TeamViewer DEX, specifically in the handling of the 1E-Nomad-SetWorkRate instruction in versions prior to 17.1. This flaw arises from improper management of executable search paths, which can be exploited by local attackers possessing write access to a PATH directory. Such access allows these attackers to escalate their privileges and execute arbitrary code with SYSTEM-level permissions, posing significant security risks. It is essential for users to update to the latest version to mitigate these vulnerabilities.
Affected Version(s)
DEX 0 < 17.1
