PT-2023-24976 · Telegram · Telegram

CVE-2023-34658

·

Publicado

2023-06-29

·

Atualizado

2024-11-27

CVSS v3.1

5.3

Média

VetorAV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:N
Name of the Vulnerable Software and Affected Versions Telegram version 9.6.3
Description The issue allows attackers to hide critical information on the User Interface by calling the function SFSafariViewController. This can potentially lead to users being unaware of important details.
Recommendations For Telegram version 9.6.3, consider disabling the SFSafariViewController function as a temporary workaround until a patch is available. Restrict access to the User Interface to minimize the risk of exploitation. At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Clickjacking

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

CVE-2023-34658

Produtos afetados

Telegram