Improper Link Resolution in TeamViewer DEX on Windows
CVE-2026-23563

5.7MEDIUM

Key Information:

Vendor

Teamviewer

Status
Vendor
CVE Published:
29 January 2026

What is CVE-2026-23563?

The TeamViewer DEX software on Windows is susceptible to improper link resolution, allowing a low-privileged local attacker to exploit this vulnerability. By using a crafted RPC control junction or symlink, the attacker can manipulate the delete instruction for protected system files. This can lead to unauthorized file deletions, potentially compromising system integrity and stability. It’s essential for users to be aware of this vulnerability and apply necessary updates to secure their systems.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.

Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.

Affected Version(s)

DEX Windows 0 < 26.1

References

CVSS V3.1

Score:
5.7
Severity:
MEDIUM
Confidentiality:
None
Integrity:
High
Availability:
None
Attack Vector:
Network
Attack Complexity:
High
Privileges Required:
High
User Interaction:
Required
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

Credit

Lockheed Martin Red Team
.