VYPR
Unrated severityNVD Advisory· Published Dec 11, 2025· Updated Dec 11, 2025

Privilege Escalation via Uncontrolled Search Path in 1E-Nomad-SetWorkRate instruction

CVE-2025-64994

Description

A privilege escalation vulnerability was discovered in TeamViewer DEX (former 1E DEX), specifically within the 1E-Nomad-SetWorkRate instruction prior V17.1. The improper handling of executable search paths could allow local attackers with write access to a PATH directory on a device to escalate privileges and execute arbitrary code as SYSTEM.

Affected products

2
  • Dexidp/Dexllm-fuzzy
    Range: V<17.1
  • TeamViewer/DEXv5
    Range: 0

Patches

0

No patches discovered yet.

Vulnerability mechanics

AI mechanics synthesis has not run for this CVE yet.

References

1

News mentions

0

No linked articles in our index yet.