CVE-2020-1908
Summary
| CVE | CVE-2020-1908 |
|---|---|
| State | PUBLIC |
| Assigner | [email protected] |
| Source Priority | CVE Program / NVD first with legacy fallback |
| Published | 2020-11-03 20:15:00 UTC |
| Updated | 2020-11-13 19:19:00 UTC |
| Description | Improper authorization of the Screen Lock feature in WhatsApp and WhatsApp Business for iOS prior to v2.20.100 could have permitted use of Siri to interact with the WhatsApp application even after the phone was locked. |
Risk And Classification
Problem Types: CWE-552
NVD Known Affected Configurations (CPE 2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Application | All | All | All | All | ||
| Application | All | All | All | All | ||
| Application | Whatsapp Business | All | All | All | All | |
| Application | Whatsapp Business | All | All | All | All |
References
| Reference | Source | Link | Tags |
|---|---|---|---|
| WhatsApp Security Advisories | CONFIRM | www.whatsapp.com | Vendor Advisory |
| CVE Program record | CVE.ORG | www.cve.org | canonical |
| NVD vulnerability detail | NVD | nvd.nist.gov | canonical, analysis |
No vendor comments have been submitted for this CVE.
There are currently no legacy QID mappings associated with this CVE.