Vulnerabilities > Whatsapp > Whatsapp Business > Medium

DATE CVE VULNERABILITY TITLE RISK
2020-11-03 CVE-2020-1908 Files or Directories Accessible to External Parties vulnerability in Whatsapp and Whatsapp Business
Improper authorization of the Screen Lock feature in WhatsApp and WhatsApp Business for iOS prior to v2.20.100 could have permitted use of Siri to interact with the WhatsApp application even after the phone was locked.
low complexity
whatsapp CWE-552
4.6
2020-10-06 CVE-2020-1904 Path Traversal vulnerability in Whatsapp and Whatsapp Business
A path validation issue in WhatsApp for iOS prior to v2.20.61 and WhatsApp Business for iOS prior to v2.20.61 could have allowed for directory traversal overwriting files when sending specially crafted docx, xlsx, and pptx files as attachments to messages.
local
low complexity
whatsapp CWE-22
5.5
2020-10-06 CVE-2020-1903 Resource Exhaustion vulnerability in Whatsapp and Whatsapp Business
An issue when unzipping docx, pptx, and xlsx documents in WhatsApp for iOS prior to v2.20.61 and WhatsApp Business for iOS prior to v2.20.61 could have resulted in an out-of-memory denial of service.
local
low complexity
whatsapp CWE-400
5.5
2019-05-10 CVE-2019-3566 Unspecified vulnerability in Whatsapp and Whatsapp Business
A bug in WhatsApp for Android's messaging logic would potentially allow a malicious individual who has taken over over a WhatsApp user's account to recover previously sent messages.
network
high complexity
whatsapp
5.9