CVE-2024-54916

MEDIUM

Telegram Android APK <11.7.0 - Privilege Escalation

Title source: llm
STIX 2.1

Exploitation Summary

EIP tracks 1 public exploit for CVE-2024-54916. PoCs published by SAHALLL.

AI-analyzed exploit summary The PoC demonstrates an authentication bypass in Telegram Android APK v11.7.0 by hooking the checkPasscode method in the SharedConfig class using Frida to always return true, bypassing passcode validation.

Description

An issue in the SharedConfig class of Telegram Android APK v.11.7.0 allows a physically proximate attacker to bypass authentication and escalate privileges by manipulating the return value of the checkPasscode method.

Exploits (1)

nomisec WORKING POC
by SAHALLL · poc
https://github.com/SAHALLL/CVE-2024-54916

The PoC demonstrates an authentication bypass in Telegram Android APK v11.7.0 by hooking the checkPasscode method in the SharedConfig class using Frida to always return true, bypassing passcode validation.

Classification
Working Poc 90%
Attack Type
Auth Bypass
Complexity
Moderate
Reliability
Reliable
Target: Telegram Android APK v11.7.0
No auth needed
Prerequisites: Physical access to the target device · Frida installed on the device · Telegram app running
devstral-2 · analyzed Feb 16, 2026 Full analysis →

Scores

CVSS v3 6.8
EPSS 0.0040
EPSS Percentile 32.0%
Attack Vector PHYSICAL
CVSS:3.1/AV:P/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

CISA SSVC

Vulnrichment
Exploitation poc
Automatable no
Technical Impact total

Details

CWE
CWE-863
Status published
Published Feb 11, 2025
Tracked Since Feb 18, 2026