CVE-2026-65769

teams: Exposure of Sensitive Information to an Unauthorized Actor (CVE-2026-65769)

Beschreibung

Offenlegung vertraulicher Informationen für einen nicht autorisierten Akteur in Microsoft Teams Mobile ermöglicht einem nicht autorisierten Angreifer, Informationen über ein Netzwerk preiszugeben.

Metriken

Severity
high
kein öffentlicher PoC bekannt
7.5
Quelle: nvd-v3
49.6 %
Hoch — CVE rangiert über dem Median aller heute bewerteten CVEs (Rang ≥ 36 %).
0.7 %
Niedrig — Modell schätzt < 1 % Ausnutzungs-Wahrscheinlichkeit.
Veröffentlicht
2026-08-11 17:05 UTC
CWE-200

Weakness-Klassen (CWE)

  • CWE-200Class

    Exposure of Sensitive Information to an Unauthorized Actor

    The product exposes sensitive information to an actor that is not explicitly authorized to have access to that information.

    cwe.mitre.org →

Re-Analyse & Statuswechsel

Chronologie der NVD-Audit-Events für diese CVE — Reanalyses, CVSS-Updates, CPE-Diffs.

  1. CVE Modified2026-08-16 17:17 UTC· secure@microsoft.com
    • Affected: Microsoft Teams for iOSMicrosoft Teams for iOS
  2. CVE Modified2026-08-11 21:17 UTC· 134c704f-9b21-4f2e-91b3-4a467353bcc0
    • SSVC: {"id":"CVE-2026-65769","role":"CISA Coordinator","options":[{"exploitation":"none"},{"automatable":"no"},{"technicalI…
  3. New CVE Received2026-08-11 17:18 UTC· secure@microsoft.com
    • Affected: Microsoft Teams for iOS
    • Description: Exposure of sensitive information to an unauthorized actor in Microsoft Teams Mobile allows an unauthorized attacker to disclose information over a network.
    • CVSS V3.1: AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:N/A:N
    • CWE: CWE-200

Betroffene Produkte

Aus der Hersteller-/CERT-Meldung extrahierte Produkte und Versionsbereiche. Ein Version-Range wie „<4.14.6“ impliziert die Update-Empfehlung „auf 4.14.6 oder höher aktualisieren“.

  • microsoft

    teams8.8.1

Quellen & Referenzen

Verknüpfte Empfehlungen

IDCVE-2026-65769