TeamViewer DEX Client Log Timestamp Tampering Vulnerability
Vulnerability
A vulnerability exists in the TeamViewer DEX Client (formerly 1E Client) Content Distribution Service (NomadBranch.exe) for Windows, prior to version 26.1. This vulnerability allows an adjacent network attacker to manipulate log timestamps by sending crafted UDP Sync commands. The result is forged or nonsensical datetime prefixes, which compromise log integrity and forensic correlation.
Impact
Exploitation of this vulnerability could lead to unauthorized modification of log timestamps, creating false or misleading log entries that could disrupt forensic analysis and incident response.
Remediation
Users are advised to update to TeamViewer DEX Client version 26.1 or the latest available version. Installations with the Content Distribution Service disabled are not affected.
Vulnerability Rating
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.
