Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-h5qv-qcjq-wcff

Опубликовано: 08 мая 2025
Источник: github
Github: Не прошло ревью
CVSS3: 1.9

Описание

The TeleMessage archiving backend through 2025-05-05 holds cleartext copies of messages from TM SGNL (aka Archive Signal) app users, which is different functionality than described in the TeleMessage "End-to-End encryption from the mobile phone through to the corporate archive" documentation, as exploited in the wild in May 2025.

The TeleMessage archiving backend through 2025-05-05 holds cleartext copies of messages from TM SGNL (aka Archive Signal) app users, which is different functionality than described in the TeleMessage "End-to-End encryption from the mobile phone through to the corporate archive" documentation, as exploited in the wild in May 2025.

EPSS

Процентиль: 85%
0.02497
Низкий

1.9 Low

CVSS3

Дефекты

CWE-912

Связанные уязвимости

CVSS3: 1.9
nvd
9 месяцев назад

The TeleMessage archiving backend through 2025-05-05 holds cleartext copies of messages from TM SGNL (aka Archive Signal) app users, which is different functionality than described in the TeleMessage "End-to-End encryption from the mobile phone through to the corporate archive" documentation, as exploited in the wild in May 2025.

EPSS

Процентиль: 85%
0.02497
Низкий

1.9 Low

CVSS3

Дефекты

CWE-912