CVE-2022-41708
PoC —CVSS 3.1
4.3 medium
EPSS
<1%p43
Published
()
Modified
Description
Relatedcode's Messenger version 7bcd20b allows an authenticated external attacker to access existing chats in the workspaces of any user of the application. This is possible because the application does not validate permissions correctly.
- Vendors
- relatedcode
- Products
- messenger
- Weakness
- CWE-281
- Vector
- CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N
In the news0 stories
No ingested article mentions this CVE yet.