Improper Authentication in Rocket.Chat Mobile App Affects User Security
CVE-2022-30124
6.8MEDIUM
What is CVE-2022-30124?
An improper authentication vulnerability exists in the Rocket.Chat Mobile App versions prior to 4.14.1.22788. This vulnerability allows an attacker with physical access to a mobile device to bypass the local authentication mechanism, such as the PIN code. As a result, unauthorized users could gain access to sensitive information and features within the app, potentially leading to severe security breaches.
Affected Version(s)
Rocket.Chat Mobile app 4.14.1.22788 iOS/Android