PT-2020-12211 · Telegram · Telegram
Vijay Tikudave
·
Published
2020-03-24
·
Updated
2021-07-21
·
CVE-2020-10570
CVSS v3.1
6.1
Medium
| Vector | AV:P/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:N |
Name of the Vulnerable Software and Affected Versions
Telegram versions through 5.12 for Android
Description
The issue might allow physically proximate attackers to bypass intended restrictions on message reading and message replying when the
Show Popup feature is enabled. This could be interpreted as a bypass of the passcode feature.Recommendations
For Telegram versions through 5.12 for Android, consider disabling the
Show Popup feature as a temporary workaround to minimize the risk of exploitation.Exploit
Fix
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Telegram