CVE-2025-47729

unknown KEV
Published 2025-05-12 · Modified 2025-05-12
CVSS v3
CVSS v2
VIR risk
1.5

Description

TeleMessage TM SGNL contains a hidden functionality vulnerability in which the archiving backend holds cleartext copies of messages from TM SGNL application users.

CISA KEV

Vendor
TeleMessage
Product
TM SGNL
Due date
2025-06-02

Predictions

Exploit likelihood
99%
Patch ETA

Heuristic predictions, AS-IS, for prioritization only.

Mitigations

vendor Authored 2026-05-27

Vendor advisory: cisa-kev — Apply mitigations per vendor instructions. Absent mitigating instructions from the vendor, discontinue use of the product. ; https://nvd.nist.gov/vuln/detail/CVE-2025-47729

Exploits

References

Verify integrity in audit chain (admin only). AS-IS.