V
Scaner-VS
HomeCatalogSourcesCWECAPECATT&CKMitigationsProductsVendorsDocs
CVE-2008-3246
CVE
Critical

Unspecified vulnerability in the PDF distiller component in the BlackBerry Attachment Service in BlackBerry Unite! 1.0 SP1 (1.0.1) before b…

CVSS
9.3
Critical
EPSS
0.07
p93
Published
2008-01-01
Updated
2008-01-01
Description

Unspecified vulnerability in the PDF distiller component in the BlackBerry Attachment Service in BlackBerry Unite! 1.0 SP1 (1.0.1) before bundle 36 and BlackBerry Enterprise Server 4.1 SP3 (4.1.3) through 4.1 SP5 (4.1.5) allows user-assisted remote attackers to execute arbitrary code via a crafted PDF file attachment.

Tags · CWE
CWE-94
CAPEC-35
CAPEC-77
CAPEC-242
Affected products
Enterprise_serverUniteBlackberry_enterprise_serverBlackberry_enterprise_server_for_dominoBlackberry_enterprise_server_for_exchangeBlackberry_enterprise_server_for_novell_groupwiseBlackberry_unite
CVSS vector
AV:N/AC:M/Au:N/C:C/I:C/A:C
Timeline
2008-01-01
Published
2008-01-01
Updated
CVSS 3.1 breakdown
Attack Vector
AV: N
Network (N)
Attack Complexity
AC: M
Medium
Authentication
Au: N
None (N)
Confidentiality Impact
C: C
Complete
Integrity Impact
I: C
Complete
Availability Impact
A: C
Complete
Exploit indicators
EPSS
0.069 · p93
Known exploited (KEV)
No
MITRE ATT&CK
Inferred via CAPEC
└ via CAPEC-35 · CWE-94
└ via CAPEC-35 · CWE-94
└ via CAPEC-35 · CWE-94
Known exploits — Сканер-ВС
No Сканер-ВС checks registered for this vulnerability yet.
Affected products
ProductVendorStatus
blackberry_enterprise_server*Tracked
blackberry_enterprise_server_for_domino*Tracked
blackberry_enterprise_server_for_exchange*Tracked
blackberry_enterprise_server_for_novell_groupwise*Tracked
blackberry_unite*Tracked
enterprise_server*Tracked
unite*Tracked
Source databases
CVE