CVE-2019-15514

The Privacy > Phone Number feature in the Telegram app 5.10 for Android and iOS provides an incorrect indication that the access level is Nobody, because attackers can find these numbers via the Group Info feature, e.g., by adding a significant fraction of a region's assigned phone numbers.
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:telegram:telegram:5.10.0:*:*:*:*:iphone_os:*:*
cpe:2.3:a:telegram:telegram:5.10.0:*:*:*:*:android:*:*

Information

Published : 2019-08-23 13:15

Updated : 2021-07-21 11:39


NVD link : CVE-2019-15514

Mitre link : CVE-2019-15514


JSON object : View

Products Affected

telegram

  • telegram
CWE
CWE-200

Exposure of Sensitive Information to an Unauthorized Actor