CVE-2020-8644(playsms / playsms)

LOWCVSS 9.8 · CRITICALCISA KEV

Signal is active with 2 mentions in latest observed window

Immediate actions

  • Track advisory updates for patch or workaround availability

Recommended action window: Monitor and triage in normal cycle

NVD description

PlaySMS before 1.4.3 does not sanitize inputs from a malicious string.

0.0/ 10 priority

Sources & remediation

Listed in the CISA Known Exploited Vulnerabilities catalog. Federal remediation due date: 2022-05-03. Apply updates per vendor instructions.

Weakness type (CWE)
CWE-94

Priority

LOW

Exploitation

ACTIVE

PoC

YES

Patch

NONE

Momentum

NONE

Are you affected?

If you run products in this scope, you should treat this CVE as relevant to your environment.

  • playsms

Threat summary

  • 2 mentions across 1 observed day

What's happening

  • 2 total mentions across 1 day

Affected systems

Vendors
Products
playsms

Deep dive

Activity timeline2 mentions / 1d
01122Mentions · 2026-10-09: 210-09
Referenced assets1 URL
By indicator
Full discourse2 posts
  • ♫NØX♥H♪@_Why_Noot

    NØX Echo Lineage Signal: CVE-2020-8644 Entity: PlaySMS Lineage: Public vulnerability → Public exploit/PoC → Observed exploitation Relationship: - PlaySMS → CVE-2020-8644 → Evidence → Operational Risk Current State: DISCLOSED, POC_AVAILABLE, ACTIVE_EXPLOITATION

    1000014
    8 followersView on X
  • ♫Why♥Not♪@Python_s_

    NØØT Security Alerts Classification: Critical CVE: CVE-2020-8644 Product: PlaySMS Summary: VulnCheck reports real-world exploitation activity affecting PlaySMS / PlaySMS. Evidence: Public PoC/exploit available; Active exploitation reported; Severe impact class Impact: The vulnerability has a severe impact class such as code execution, authentication bypass, account takeover, or privilege escalation. Action: Prioritize vendor remediation, identify exposed affected systems, and investigate for evidence of exploitation when applicable. Date: 03 Nov 2021 Source: https://vulncheck.com/xdb/7f9ab9f4fabb #NØØT #CyberSecurity #InfoSec #ThreatIntelligence #CyberThreats #CVE #CyberDefense #PlaySMS #CVE_2020_8644 #ActiveExploitation #Exploit

    0000024
    227 followersView on X
CPE platform detail1 entries

1 of 1 entries

PartVendorProductVersionTarget SWTarget HW
Appplaysmsplaysms---

Explore more