IT

Tracker / CVE-2013-6798

CVE-2013-6798

Medium 5.8

BlackBerry Link before 1.2.1.31 on Windows and before 1.1.1 build 39 on Mac OS X does not properly determine the user account for execution of Peer Manager in certain situations involving successive logins with different accounts, which allows context-dependent attackers to bypass intended restrictions on remote file-access folders via IPv6 WebDAV requests, a different vulnerability than CVE-2013-3694.

Affected products and versions

blackberry blackberry_link
blackberry blackberry_link · … → 1.1.1.26
blackberry blackberry_link · … → 1.2.0.28

Analysis

This page is not indexable yet.Until it carries original analysis — what it actually exposes, how to check in two minutes whether a system was touched, what to do if it was — the page stays noindex. The database decides that, not the template.

References