You are using an out of date browser. It may not display this or other websites correctly. You should upgrade or use an alternative browser.
cve-2024-38197
About this tag
CVE-2024-38197 is a spoofing vulnerability in Microsoft Teams for iOS, disclosed by Microsoft on August 13, 2024. This flaw could allow attackers to impersonate users, spoof notifications, rewrite chat history, and forge caller identities in voice and video calls. Check Point Research reported the findings, and Microsoft released a patch for iOS to address the issue. The vulnerability poses significant risks for organizations relying on Teams for daily communication, as it undermines trust in user identities. Administrators are advised to apply the update promptly to mitigate potential impersonation and spoofing attacks.
Microsoft Teams — one of the world’s most widely used collaboration platforms — was shown to contain a set of trust‑breaking flaws that could let attackers impersonate executives, spoof notifications, rewrite chat history silently, and even forge caller identities in voice/video calls; Check...
CVE-2024-38197: Microsoft Teams for iOS Spoofing Vulnerability
Overview
On August 13, 2024, Microsoft disclosed a new security vulnerability affecting its Teams application for iOS. Identified as CVE-2024-38197, this vulnerability poses a significant risk for users of the popular communication...