TeamViewer DEX Client Log Timestamp Tampering Vulnerability

Vulnerability

A vulnerability exists in the TeamViewer DEX Client (formerly 1E Client) Content Distribution Service (NomadBranch.exe) for Windows, prior to version 26.1. This vulnerability allows an adjacent network attacker to manipulate log timestamps by sending crafted UDP Sync commands. The result is forged or nonsensical datetime prefixes, which compromise log integrity and forensic correlation.

Impact

Exploitation of this vulnerability could lead to unauthorized modification of log timestamps, creating false or misleading log entries that could disrupt forensic analysis and incident response.

Remediation

Users are advised to update to TeamViewer DEX Client version 26.1 or the latest available version. Installations with the Content Distribution Service disabled are not affected.

Added: Jan 29, 2026, 9:18 AM
Updated: Jan 29, 2026, 5:11 PM

Vulnerability Rating

Custom Algorithm
spread
0.0
impact
0.6
exploitability
4.5
remediation
0.0
relevance
2.5
threat
0.0
urgency
2.9
incentive
0.0

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.