PT-2025-18690 · Gotenna · Gotenna Mesh

Clayton Smith

+1

·

Published

2025-05-01

·

Updated

2025-05-03

·

CVE-2025-32890

CVSS v3.1

6.5

Medium

VectorAV:A/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:N
Name of the Vulnerable Software and Affected Versions goTenna Mesh versions 5.5.3 and firmware 1.1.12
Description The issue concerns a custom encryption implementation without additional integrity checking mechanisms, making messages susceptible to tampering by an attacker with access to the message.
Recommendations For goTenna Mesh version 5.5.3 and firmware 1.1.12, consider implementing additional integrity checking mechanisms to prevent message tampering. At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

Weakness Enumeration

Related Identifiers

CVE-2025-32890

Affected Products

Gotenna Mesh