{"resultsPerPage":1,"startIndex":0,"totalResults":1,"format":"NVD_CVE","version":"2.0","timestamp":"2026-09-21T05:36:05.938","vulnerabilities":[{"cve":{"id":"CVE-2020-1908","sourceIdentifier":"cve-assign@fb.com","published":"2020-11-03T20:15:12.330","lastModified":"2026-06-17T03:02:35.730","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"Improper authorization of the Screen Lock feature in WhatsApp and WhatsApp Business for iOS prior to v2.20.100 could have permitted use of Siri to interact with the WhatsApp application even after the phone was locked."},{"lang":"es","value":"La autorización inapropiada de la funcionalidad Screen Lock en WhatsApp y WhatsApp Business para iOS anterior a versión v2.20.100, podría haber permitido el uso de Siri para interactuar con la aplicación WhatsApp inclusive después de que el teléfono estuviera bloqueado"}],"affected":[{"source":"cve-assign@fb.com","affectedData":[{"vendor":"Facebook","product":"WhatsApp Business for iOS","versions":[{"version":"2.20.100","status":"affected"},{"version":"unspecified","lessThan":"2.20.100","versionType":"custom","status":"affected"}]},{"vendor":"Facebook","product":"WhatsApp for iOS","versions":[{"version":"2.20.100","status":"affected"},{"version":"unspecified","lessThan":"2.20.100","versionType":"custom","status":"affected"}]}]}],"metrics":{"cvssMetricV31":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"3.1","vectorString":"CVSS:3.1/AV:P/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:N","baseScore":4.6,"baseSeverity":"MEDIUM","attackVector":"PHYSICAL","attackComplexity":"LOW","privilegesRequired":"NONE","userInteraction":"NONE","scope":"UNCHANGED","confidentialityImpact":"NONE","integrityImpact":"HIGH","availabilityImpact":"NONE"},"exploitabilityScore":0.9,"impactScore":3.6}],"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:N/I:P/A:N","baseScore":2.1,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"PARTIAL","availabilityImpact":"NONE"},"baseSeverity":"LOW","exploitabilityScore":3.9,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"cve-assign@fb.com","type":"Secondary","description":[{"lang":"en","value":"CWE-285"}]},{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"CWE-552"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:whatsapp:whatsapp:*:*:*:*:*:iphone_os:*:*","versionEndExcluding":"2.20.100","matchCriteriaId":"530735AF-E014-4218-9EAD-39FC0EDC9B46"},{"vulnerable":true,"criteria":"cpe:2.3:a:whatsapp:whatsapp_business:*:*:*:*:*:iphone_os:*:*","versionEndExcluding":"2.20.100","matchCriteriaId":"F7A546C8-BFFF-438D-8201-F68F1AD15389"}]}]}],"references":[{"url":"https://www.whatsapp.com/security/advisories/2020/","source":"cve-assign@fb.com","tags":["Vendor Advisory"]},{"url":"https://www.whatsapp.com/security/advisories/2020/","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Vendor Advisory"]}]}}]}