CVE-2025-64995: Privilege Escalation via Process Hijacking in 1E-Exchange-NomadClientHealth-ConfigureGeneralSetting instruction
A privilege escalation vulnerability was discovered in TeamViewer DEX (former 1E DEX), specifically within the 1E-Exchange-NomadClientHealth-ConfigureGeneralSetting instruction prior V3.4. Improper protection of the execution path on the local device allows attackers, with local access to the device during execution, to hijack the process and execute arbitrary code with SYSTEM privileges.
Affected Software
Remediation
Information
Event History
Frequently Asked Questions
What is the severity of CVE-2025-64995?
CVE-2025-64995 has been classified as a high severity privilege escalation vulnerability.
How do I fix CVE-2025-64995?
To mitigate CVE-2025-64995, update TeamViewer DEX to version 3.4 or later.
What does CVE-2025-64995 affect?
CVE-2025-64995 affects TeamViewer DEX prior to version 3.4.
Who is affected by CVE-2025-64995?
Any user of TeamViewer DEX versions prior to 3.4 is potentially vulnerable to CVE-2025-64995.
What type of vulnerability is CVE-2025-64995?
CVE-2025-64995 is a privilege escalation vulnerability resulting from improper protection of the execution path.