TeleMessage Service Exposes Sensitive Information in Memory
CVE-2025-48930

2.8LOW

Key Information:

Status
Vendor
CVE Published:
28 May 2025

What is CVE-2025-48930?

The TeleMessage service has a critical flaw that allows for the storage of sensitive cleartext information in memory, which can be accessed by adversaries through various means. This vulnerability was actively exploited in May 2025, raising significant concerns regarding user data integrity and security. Organizations relying on TeleMessage should take immediate action to secure their systems and limit exposure to potential breaches.

Affected Version(s)

service 0 <= 2025-05-05

References

CVSS V3.1

Score:
2.8
Severity:
LOW
Confidentiality:
Low
Integrity:
None
Availability:
Low
Attack Vector:
Local
Attack Complexity:
High
Privileges Required:
Low
User Interaction:
None
Scope:
Changed

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.