PoC Index

CVE-2019-14319

MEDIUM 6.5EPSS 1.1%

The TikTok (formerly Musical.ly) application 12.2.0 for Android and iOS performs unencrypted transmission of images, videos, and likes. This allows an attacker to extract private sensitive information by sniffing network traffic.

CVSS v3.0
6.5 MEDIUMCVSS:3.0/AV:A/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
CVSS v2.0
3.3 LOWAV:A/AC:L/Au:N/C:P/I:N/A:N
EPSS
1.06% chance of exploitation in the next 30 days, 62th percentile
Published
2019-09-04
Updated
2024-08-05

Proof-of-concept exploits (1)

References

Related