Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2018-17780

Опубликовано: 29 сент. 2018
Источник: nvd
CVSS3: 6.5
CVSS2: 4
EPSS Низкий

Описание

Telegram Desktop (aka tdesktop) 1.3.14, and Telegram 3.3.0.0 WP8.1 on Windows, leaks end-user public and private IP addresses during a call because of an unsafe default behavior in which P2P connections are accepted from clients outside of the My Contacts list.

Уязвимые конфигурации

Конфигурация 1

Одно из

cpe:2.3:a:telegram:telegram_desktop:1.3.14:*:*:*:*:*:*:*
cpe:2.3:a:telegram:telegram_messenger:3.3.0.0:*:*:*:*:windows:*:*

EPSS

Процентиль: 58%
0.0037
Низкий

6.5 Medium

CVSS3

4 Medium

CVSS2

Дефекты

CWE-200

Связанные уязвимости

CVSS3: 6.5
ubuntu
больше 7 лет назад

Telegram Desktop (aka tdesktop) 1.3.14, and Telegram 3.3.0.0 WP8.1 on Windows, leaks end-user public and private IP addresses during a call because of an unsafe default behavior in which P2P connections are accepted from clients outside of the My Contacts list.

CVSS3: 6.5
debian
больше 7 лет назад

Telegram Desktop (aka tdesktop) 1.3.14, and Telegram 3.3.0.0 WP8.1 on ...

CVSS3: 6.5
github
больше 3 лет назад

Telegram Desktop (aka tdesktop) 1.3.14, and Telegram 3.3.0.0 WP8.1 on Windows, leaks end-user public and private IP addresses during a call because of an unsafe default behavior in which P2P connections are accepted from clients outside of the My Contacts list.

EPSS

Процентиль: 58%
0.0037
Низкий

6.5 Medium

CVSS3

4 Medium

CVSS2

Дефекты

CWE-200