Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

msrc логотип

CVE-2024-38197

Опубликовано: 13 авг. 2024
Источник: msrc
CVSS3: 6.5
EPSS Низкий

Описание

Microsoft Teams for iOS Spoofing Vulnerability

FAQ

According to the CVSS metric, successful exploitation of this vulnerability could lead to some loss of confidentiality (C:L) and integrity (I:L) but does not impact availability (A:N)? What does that mean for this vulnerability?

The attacker is only able to modify the sender's name of Teams message (I:L) and through social engineering, attempt to trick the recipient into disclosing information (C:L). The availability of the product cannot be affected (A:N).

How do I get the update for Microsoft Teams for iOS?

  1. Tap the Settings icon
  2. Tap the** iTunes & App Store**
  3. Turn on AUTOMATIC DOWNLOADS for Apps

Alternatively

  1. Tap the** App Store** icon
  2. Scroll down to find Microsoft Teams
  3. Tap the Update button

How do I get the update for Teams for Android?

  1. Tap the Play Store icon on your home screen.
  2. Tap the circular account icon at the top right of the screen.
  3. Tap Manage apps & devices.
  4. Tap Updates available.
  5. Tap the Update button next to the Microsoft Teams app.

Is there a direct link on the web?

Yes: https://play.google.com/store/apps/details?id=com.microsoft.teams

Обновления

ПродуктСтатьяОбновление
Microsoft Teams for iOS

Показывать по

Возможность эксплуатации

Publicly Disclosed

No

Exploited

No

Latest Software Release

Exploitation Less Likely

EPSS

Процентиль: 91%
0.06628
Низкий

6.5 Medium

CVSS3

Связанные уязвимости

CVSS3: 6.5
nvd
больше 1 года назад

Microsoft Teams for iOS Spoofing Vulnerability

CVSS3: 6.5
github
больше 1 года назад

Microsoft Teams for iOS Spoofing Vulnerability

CVSS3: 6.5
fstec
больше 1 года назад

Уязвимость корпоративной платформы Microsoft Teams операционной системы IOS, позволяющая нарушителю проводить спуфинг-атаки

EPSS

Процентиль: 91%
0.06628
Низкий

6.5 Medium

CVSS3