PT-2025-48652 · Meetme · Meetme

Published

2025-12-02

·

Updated

2025-12-02

·

CVE-2025-10971

CVSS v4.0

8.8

High

VectorAV:L/AC:H/AT:P/PR:N/UI:N/VC:H/VI:H/VA:L/SC:H/SI:H/SA:L/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X
Name of the Vulnerable Software and Affected Versions MeetMe versions through 2.2.5
Description An issue exists in MeetMe on iOS and Android that involves insecure storage of sensitive information, potentially allowing retrieval of embedded sensitive data if a device is compromised. The issue affects devices worldwide, though the number of potentially affected devices is not specified. The vulnerability allows an attacker to retrieve embedded sensitive data.
Recommendations MeetMe versions prior to 2.2.5 should be updated. Enforce Mobile Device Management (MDM) and device encryption.

Fix

Insecure Storage of Sensitive Information

Weakness Enumeration

Related Identifiers

CVE-2025-10971

Affected Products

Meetme