Lack of Server-side validation in Instruction Input in TeamViewer DEX Platform (On-Premises)
Summary
| CVE | CVE-2026-2695 |
|---|---|
| State | PUBLISHED |
| Assigner | TV |
| Source Priority | CVE Program / NVD first with legacy fallback |
| Published | 2026-05-13 17:16:19 UTC |
| Updated | 2026-05-13 18:10:51 UTC |
| Description | A command injection vulnerability was discovered in TeamViewer DEX Platform On-Premises (former 1E DEX Platform On-Premises) prior to version 9.2. Improper input validation allows authenticated users with at least questioner privileges to inject commands in specific instructions. Exploitation could lead to execution of elevated commands on devices connected to the platform. |
Risk And Classification
Primary CVSS: v3.1 6.3 MEDIUM from [email protected]
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L
EPSS: 0.000920000 probability, percentile 0.256050000 (date 2026-05-21)
Problem Types: CWE-20 | CWE-20 CWE-20 Improper input validation
| Version | Source | Type | Score | Severity | Vector |
|---|---|---|---|---|---|
| 3.1 | [email protected] | Secondary | 6.3 | MEDIUM | CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L |
| 3.1 | CNA | CVSS | 6.3 | MEDIUM | CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L |
CVSS v3.1 Breakdown
Attack Vector
NetworkAttack Complexity
LowPrivileges Required
LowUser Interaction
NoneScope
UnchangedConfidentiality
LowIntegrity
LowAvailability
LowCVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L
Vendor Declared Affected Products
| Source | Vendor | Product | Version | Platforms |
|---|---|---|---|---|
| CNA | TeamViewer | DEX On-Premises | affected 9.2 custom | Not specified |
References
| Reference | Source | Link | Tags |
|---|---|---|---|
| www.teamviewer.com/de/resources/trust-center/security-bulletins/tv-2026-1004 | [email protected] | www.teamviewer.com | |
| CVE Program record | CVE.ORG | www.cve.org | canonical |
| NVD vulnerability detail | NVD | nvd.nist.gov | canonical, analysis |
Vendor Comments And Credit
Discovery Credit
CNA: Lockheed Martin Red Team (en)
Additional Advisory Data
Solutions
CNA: Update to the latest version (v9.2 or the latest available version).
There are currently no legacy QID mappings associated with this CVE.