📦 Telemessage

by Smarsh

🔍 What is Telemessage?

Description coming soon...

🛡️ Security Overview

Click on a severity to filter vulnerabilities

⚠️ Known Vulnerabilities

CVE-2025-48929

MEDIUM CVSS 4.0 May 28, 2025

This vulnerability in TeleMessage allows attackers to reuse stolen long-lived authentication credentials to gain unauthorized access to the service. It affects all TeleMessage users who haven't implem...

CVE-2025-48925

MEDIUM CVSS 4.3 May 28, 2025

TeleMessage service uses client-side MD5 hashing for authentication, allowing attackers to intercept or forge authentication credentials. This affects all TeleMessage users who rely on the TM SGNL app...

CVE-2025-48927

MEDIUM CVSS 5.3 May 28, 2025

The TeleMessage service exposes a Spring Boot Actuator heap dump endpoint at /heapdump, allowing attackers to retrieve memory contents. This vulnerability affects all TeleMessage deployments using vul...

CVE-2025-47730

MEDIUM CVSS 4.8 May 8, 2025

This CVE describes a hardcoded credential vulnerability in TeleMessage's archiving backend that accepts API calls with static username 'logfile' and password 'enRR8UVVywXYbFkqU#QDPRkO' for authenticat...