CVE-2019-3566
 
Severity Score
Exploit Likelihood
Affected Versions
Public Exploits
0Exploited in Wild
-Decision
Descriptions
A bug in WhatsApp for Android's messaging logic would potentially allow a malicious individual who has taken over over a WhatsApp user's account to recover previously sent messages. This behavior requires independent knowledge of metadata for previous messages, which are not available publicly. This issue affects WhatsApp for Android 2.19.52 and 2.19.54 - 2.19.103, as well as WhatsApp Business for Android starting in v2.19.22 until v2.19.38.
Se descubrió un error en la lógica de mensajería de WhatsApp para Android que permitiría potencialmente que un individuo malicioso que se haya encargado de la cuenta de un usuario de WhatsApp recupere los mensajes enviados anteriormente. Este comportamiento requiere un conocimiento independiente de los metadatos para los mensajes anteriores, que no están disponibles públicamente. Este problema afecta a WhatsApp para Android versión 2.19.52 y versión 2.19.54 - 2.19.103, así como a WhatsApp Business para Android comenzando en la versión v2.19.22 hasta v2.19.38.
CVSS Scores
SSVC
- Decision:-
Timeline
- 2019-01-02 CVE Reserved
- 2019-05-10 CVE Published
- 2023-03-07 EPSS Updated
- 2024-08-04 CVE Updated
- ---------- Exploited in Wild
- ---------- KEV Due Date
- ---------- First Exploit
CWE
- CWE-284: Improper Access Control
CAPEC
References (1)
URL | Tag | Source |
---|---|---|
https://www.facebook.com/security/advisories/cve-2019-3566 | Third Party Advisory |
URL | Date | SRC |
---|
URL | Date | SRC |
---|
URL | Date | SRC |
---|
Affected Vendors, Products, and Versions
Vendor | Product | Version | Other | Status | ||||||
---|---|---|---|---|---|---|---|---|---|---|
Vendor | Product | Version | Other | Status | <-- --> | Vendor | Product | Version | Other | Status |
Whatsapp Search vendor "Whatsapp" | Whatsapp Search vendor "Whatsapp" for product "Whatsapp" | >= 2.19.54 <= 2.19.103 Search vendor "Whatsapp" for product "Whatsapp" and version " >= 2.19.54 <= 2.19.103" | android |
Affected
| ||||||
Whatsapp Search vendor "Whatsapp" | Whatsapp Search vendor "Whatsapp" for product "Whatsapp" | 2.19.52 Search vendor "Whatsapp" for product "Whatsapp" and version "2.19.52" | android |
Affected
| ||||||
Whatsapp Search vendor "Whatsapp" | Whatsapp Business Search vendor "Whatsapp" for product "Whatsapp Business" | >= 2.19.22 <= 2.19.38 Search vendor "Whatsapp" for product "Whatsapp Business" and version " >= 2.19.22 <= 2.19.38" | android |
Affected
|