Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-5wx3-hjmf-qcgx

Опубликовано: 28 мая 2025
Источник: github
Github: Не прошло ревью
CVSS3: 4

Описание

The TeleMessage service through 2025-05-05 implements authentication through a long-lived credential (e.g., not a token with a short expiration time) that can be reused at a later date if discovered by an adversary, as exploited in the wild in May 2025.

The TeleMessage service through 2025-05-05 implements authentication through a long-lived credential (e.g., not a token with a short expiration time) that can be reused at a later date if discovered by an adversary, as exploited in the wild in May 2025.

EPSS

Процентиль: 11%
0.00037
Низкий

4 Medium

CVSS3

Дефекты

CWE-613
CWE-922

Связанные уязвимости

CVSS3: 4
nvd
9 месяцев назад

The TeleMessage service through 2025-05-05 implements authentication through a long-lived credential (e.g., not a token with a short expiration time) that can be reused at a later date if discovered by an adversary.

EPSS

Процентиль: 11%
0.00037
Низкий

4 Medium

CVSS3

Дефекты

CWE-613
CWE-922