CVE-2025-47730
The TeleMessage archiving backend through 2025-05-05 accepts API calls (to request an authentication token) from the TM SGNL (aka Archive Signal) app with the credentials of logfile for the user and enRR8UVVywXYbFkqU#QDPRkO for the password.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-47730?
CVE-2025-47730 is regarded as a high severity vulnerability due to unauthorized access to the TeleMessage archiving backend.
How do I fix CVE-2025-47730?
To fix CVE-2025-47730, update the TeleMessage Archiving Backend to a version beyond 2025-05-05.
What is the impact of CVE-2025-47730?
The impact of CVE-2025-47730 includes potential unauthorized access to sensitive user data through compromised authentication tokens.
Who is affected by CVE-2025-47730?
CVE-2025-47730 affects users of the TeleMessage Archiving Backend version prior to 2025-05-05.
What systems are vulnerable to CVE-2025-47730?
The systems vulnerable to CVE-2025-47730 are those running the TeleMessage Archiving Backend software up to the date of 2025-05-05.