CVE-2020-12474

Telegram Desktop through 2.0.1, Telegram through 6.0.1 for Android, and Telegram through 6.0.1 for iOS allow an IDN Homograph attack via Punycode in a public URL or a group chat invitation URL.
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:telegram:telegram:*:*:*:*:*:android:*:*
cpe:2.3:a:telegram:telegram:*:*:*:*:*:iphone_os:*:*
cpe:2.3:a:telegram:telegram_desktop:*:*:*:*:*:*:*:*

History

21 Nov 2024, 04:59

Type Values Removed Values Added
References () https://github.com/VijayT007/Vulnerability-Database/blob/master/Telegram:CVE-2020-12474 - Third Party Advisory () https://github.com/VijayT007/Vulnerability-Database/blob/master/Telegram:CVE-2020-12474 - Third Party Advisory

Information

Published : 2020-05-01 14:15

Updated : 2024-11-21 04:59


NVD link : CVE-2020-12474

Mitre link : CVE-2020-12474

CVE.ORG link : CVE-2020-12474


JSON object : View

Products Affected

telegram

  • telegram
  • telegram_desktop