CVE-2024-47123
CVSS 3.1 Score 3.1 of 10 (low)
Details
Published Sep 26, 2024
Updated: Nov 21, 2024
CWE ID 353
CWE ID 345
Summary
CVE-2024-47123: goTenna Pro App is vulnerable due to the use of AES CTR type encryption without additional integrity checking mechanisms for short messages. This weakness allows attackers who gain access to the message to manipulate its content without detection. Users are advised to continue using encryption in the app and upgrade to the latest version for enhanced security.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.
Affected Products
- Pro Series