CVE-2020-1908

Improper authorization of the Screen Lock feature in WhatsApp and WhatsApp Business for iOS prior to v2.20.100 could have permitted use of Siri to interact with the WhatsApp application even after the phone was locked.
References
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:whatsapp:whatsapp:*:*:*:*:*:iphone_os:*:*
cpe:2.3:a:whatsapp:whatsapp_business:*:*:*:*:*:iphone_os:*:*

History

No history.

Information

Published : 2020-11-03 20:15

Updated : 2024-02-04 21:23


NVD link : CVE-2020-1908

Mitre link : CVE-2020-1908

CVE.ORG link : CVE-2020-1908


JSON object : View

Products Affected

whatsapp

  • whatsapp
  • whatsapp_business
CWE
CWE-552

Files or Directories Accessible to External Parties

CWE-285

Improper Authorization