← back
CVE-2024-47125

Improper Restriction of Communication Channel to Intended Endpoints in goTenna Pro

CVSS 7.6 HIGHEPSS 0.1%CWE-923
The goTenna Pro App does not authenticate public keys which allows an unauthenticated attacker to manipulate messages. It is advised to update your app to the current release for enhanced encryption protocols.
CVSS:4.0/AV:A/AC:L/AT:P/PR:N/UI:N/VC:H/VI:H/VA:N/SC:N/SI:N/SA:N
Affected products
goTenna · Pro

Want to know if your infrastructure is exposed to this?

Talk to TrueHacking →