Unrated severityNVD Advisory· Published Jan 29, 2026· Updated Jan 29, 2026
Privilege escalation in TeamViewer DEX via DeleteFileByPath instruction
CVE-2026-23563
Description
Improper Link Resolution Before File Access (invoked by 1E‑Explorer‑TachyonCore‑DeleteFileByPath instruction) in TeamViewer DEX - 1E Client before version 26.1 on Windows allows a low‑privileged local attacker to delete protected system files via a crafted RPC control junction or symlink that is followed when the delete instruction executes.
Affected products
2- Range: <26.1
- TeamViewer/DEXv5Range: 0
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
1News mentions
0No linked articles in our index yet.