Vulnerabilities > CVE-2021-27351 - Insufficient Session Expiration vulnerability in Telegram

047910
CVSS 5.3 - MEDIUM
Attack vector
NETWORK
Attack complexity
LOW
Privileges required
NONE
Confidentiality impact
NONE
Integrity impact
LOW
Availability impact
NONE
network
low complexity
telegram
CWE-613

Summary

The Terminate Session feature in the Telegram application through 7.2.1 for Android, and through 2.4.7 for Windows and UNIX, fails to invalidate a recently active session.

Vulnerable Configurations

Part Description Count
Application
Telegram
146

Common Weakness Enumeration (CWE)