CVE-2026-23570

A missing validation of a user-controlled value in the TeamViewer DEX Client (former 1E Client) - Content Distribution Service (NomadBranch.exe) prior version 26.1 for Windows allows an adjacent network attacker to tamper with log timestamps via crafted UDP Sync command. This could result in forged or nonsensical datetime prefixes and compromising log integrity and forensic correlation.
Configurations

Configuration 1 (hide)

AND
cpe:2.3:a:teamviewer:digital_employee_experience:*:*:*:*:*:*:*:*
cpe:2.3:o:microsoft:windows:-:*:*:*:*:*:*:*

History

No history.

Information

Published : 2026-01-29 09:16

Updated : 2026-06-17 10:21


NVD link : CVE-2026-23570

Mitre link : CVE-2026-23570

CVE.ORG link : CVE-2026-23570


JSON object : View

Products Affected

teamviewer

  • digital_employee_experience

microsoft

  • windows
CWE
CWE-20

Improper Input Validation