cvedb.io
CVE-2025-48929
MEDIUM · CVSS 4
EPSS exploitation probability: 0%
Published 2025-05-28T17:15:25.233 · Last modified 2026-06-17T09:30:30.227

Summary

The TeleMessage service through 2025-05-05 implements authentication through a long-lived credential (e.g., not a token with a short expiration time) that can be reused at a later date if discovered by an adversary.

Affected products

smarsh — telemessage

Does this affect you?

Add your gear to cvedb and we'll alert you only when smarsh ships something exploited.

Check my exposure →

References

This product uses data from the NVD API but is not endorsed or certified by the NVD. Informational only; not professional security advice.