Lucene search

K
cve[email protected]CVE-2008-3246
HistoryJul 21, 2008 - 4:41 p.m.

CVE-2008-3246

2008-07-2116:41:00
CWE-94
web.nvd.nist.gov
29
cve-2008-3246
pdf distiller
blackberry
unite
enterprise server
remote code execution
nvd

9.3 High

CVSS2

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:N/AC:M/Au:N/C:C/I:C/A:C

7.3 High

AI Score

Confidence

Low

0.284 Low

EPSS

Percentile

96.9%

Unspecified vulnerability in the PDF distiller component in the BlackBerry Attachment Service in BlackBerry Unite! 1.0 SP1 (1.0.1) before bundle 36 and BlackBerry Enterprise Server 4.1 SP3 (4.1.3) through 4.1 SP5 (4.1.5) allows user-assisted remote attackers to execute arbitrary code via a crafted PDF file attachment.

Affected configurations

NVD
Node
blackberryenterprise_serverMatch4.1sp3
OR
blackberryenterprise_serverMatch4.1.3
OR
blackberryenterprise_serverMatch4.1.4
OR
blackberryenterprise_serverMatch4.1.5
OR
blackberryuniteMatch1.0sp1
OR
blackberryuniteMatch1.0.1
OR
rimblackberry_enterprise_serverMatch4.1.3
OR
rimblackberry_enterprise_serverMatch4.1.4
OR
rimblackberry_enterprise_serverMatch4.1.5
OR
rimblackberry_enterprise_server_for_domino
OR
rimblackberry_enterprise_server_for_exchange
OR
rimblackberry_enterprise_server_for_novell_groupwise
OR
rimblackberry_uniteMatch1.0sp1
OR
rimblackberry_uniteMatch1.0.1

9.3 High

CVSS2

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:N/AC:M/Au:N/C:C/I:C/A:C

7.3 High

AI Score

Confidence

Low

0.284 Low

EPSS

Percentile

96.9%

Related for CVE-2008-3246