Authentication Vulnerability in TeleMessage by TeleMessage
CVE-2025-48929

4MEDIUM

Key Information:

Status
Vendor
CVE Published:
28 May 2025

What is CVE-2025-48929?

The TeleMessage service has a significant authentication vulnerability due to the use of long-lived credentials that can be exploited if obtained by an attacker. This flaw allows these credentials to be reused, potentially enabling unauthorized access. The issue was first observed in the wild in May 2025, highlighting the urgency for users to adopt better security practices and stay informed about potential threats.

Affected Version(s)

service 0 <= 2025-05-05

References

CVSS V3.1

Score:
4
Severity:
MEDIUM
Confidentiality:
Low
Integrity:
None
Availability:
Low
Attack Vector:
Network
Attack Complexity:
High
Privileges Required:
None
User Interaction:
None
Scope:
Changed

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.