CVE-2020-1902
CVE-2020-1902
Vexday Risk Score
3Low
SSVC decision (CISA)
Track
No exploitation signal → monitor
CVSS —EPSS 0.7%KEV nãoPoC —Nuclei —Metasploit —Patch —
Lifecycle
06 Oct 2020Published on NVD
Recommendation: Monitor — no exploitation signal at the moment.
A user running a quick search on a highly forwarded message on WhatsApp for Android from v2.20.108 to v2.20.140 or WhatsApp Business for Android from v2.20.35 to v2.20.49 could have been sent to the Google service over plain HTTP.
Want to know if your infrastructure is exposed to this?
Talk to TrueHacking →