Loading vulnerability details…
CVSS v3.1
8.8
CVSS v4.0
8.7
EPSS
0.22%
Published
Sep 26, 2024
Modified
Oct 17, 2024
Public PoC / Exploit (1)
All weaponized →Links to public security research (Exploit-DB, Nuclei, Trickest, GitHub) for defensive use only.
Description
The goTenna Pro App allows unauthenticated attackers to remotely update the local public keys used for P2P and group messages. It is advised to update your app to the current release for enhanced encryption protocols.
CVSS Vector
CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:HWeaknesses (CWE)
References (1)