Authentication Vulnerability in TeleMessage by TeleMessage
CVE-2025-48929
4MEDIUM
What is CVE-2025-48929?
The TeleMessage service has a significant authentication vulnerability due to the use of long-lived credentials that can be exploited if obtained by an attacker. This flaw allows these credentials to be reused, potentially enabling unauthorized access. The issue was first observed in the wild in May 2025, highlighting the urgency for users to adopt better security practices and stay informed about potential threats.
Affected Version(s)
service 0 <= 2025-05-05
References
CVSS V3.1
Score:
4
Severity:
MEDIUM
Confidentiality:
Low
Integrity:
None
Availability:
Low
Attack Vector:
Network
Attack Complexity:
High
Privileges Required:
None
User Interaction:
None
Scope:
Changed
Timeline
Vulnerability published
Vulnerability Reserved
