CVE-2026-23565
Denial of Service in TeamViewer NomadBranch.exe via Network Requests
Publication date: 2026-01-29
Last updated on: 2026-02-11
Assigner: TeamViewer Germany GmbH
Description
Description
CVSS Scores
EPSS Scores
| Probability: | |
| Percentile: |
Meta Information
Affected Vendors & Products
| Vendor | Product | Version / Range |
|---|---|---|
| teamviewer | digital_employee_experience | to 26.1 (exc) |
Helpful Resources
Exploitability
| CWE ID | Description |
|---|---|
| CWE-476 | The product dereferences a pointer that it expects to be valid but is NULL. |
Attack-Flow Graph
AI Powered Q&A
Can you explain this vulnerability to me?
This vulnerability exists in the TeamViewer DEX Client's Content Distribution Service (NomadBranch.exe) prior to version 26.1 for Windows. An attacker on the adjacent network can send specially crafted requests that cause the NomadBranch.exe process to terminate unexpectedly, leading to a denial-of-service condition for the Content Distribution Service.
How can this vulnerability impact me? :
The vulnerability can cause the Content Distribution Service to become unavailable due to the termination of the NomadBranch.exe process. This results in a denial-of-service condition, potentially disrupting content distribution operations relying on this service.