Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2025-32882

Опубликовано: 01 мая 2025
Источник: nvd
CVSS3: 5.3
CVSS3: 6.5
EPSS Низкий

Описание

An issue was discovered on goTenna v1 devices with app 5.5.3 and firmware 0.25.5. The app uses a custom implementation of encryption without any additional integrity checking mechanisms. This leaves messages malleable to an attacker that can access the message.

Уязвимые конфигурации

Конфигурация 1

Одновременно

cpe:2.3:o:gotenna:mesh_firmware:0.25.5:*:*:*:*:*:*:*
cpe:2.3:h:gotenna:mesh:-:*:*:*:*:*:*:*
Конфигурация 2
cpe:2.3:a:gotenna:gotenna:5.5.3:*:*:*:*:-:*:*

EPSS

Процентиль: 1%
0.00009
Низкий

5.3 Medium

CVSS3

6.5 Medium

CVSS3

Дефекты

CWE-353

Связанные уязвимости

CVSS3: 5.3
github
9 месяцев назад

An issue was discovered on goTenna v1 devices with app 5.5.3 and firmware 0.25.5. The app uses a custom implementation of encryption without any additional integrity checking mechanisms. This leaves messages malleable to an attacker that can access the message.

EPSS

Процентиль: 1%
0.00009
Низкий

5.3 Medium

CVSS3

6.5 Medium

CVSS3

Дефекты

CWE-353