Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-9vc6-5cgr-2rx3

Опубликовано: 14 мая 2022
Источник: github
Github: Не прошло ревью

Описание

The Storage and Access service in BlackBerry OS 10.x before 10.2.1.1925 on Q5, Q10, Z10, and Z30 devices does not enforce the password requirement for SMB filesystem access, which allows context-dependent attackers to read arbitrary files via (1) a session over a Wi-Fi network or (2) a session over a USB connection in Development Mode.

The Storage and Access service in BlackBerry OS 10.x before 10.2.1.1925 on Q5, Q10, Z10, and Z30 devices does not enforce the password requirement for SMB filesystem access, which allows context-dependent attackers to read arbitrary files via (1) a session over a Wi-Fi network or (2) a session over a USB connection in Development Mode.

EPSS

Процентиль: 52%
0.00287
Низкий

Связанные уязвимости

nvd
больше 11 лет назад

The Storage and Access service in BlackBerry OS 10.x before 10.2.1.1925 on Q5, Q10, Z10, and Z30 devices does not enforce the password requirement for SMB filesystem access, which allows context-dependent attackers to read arbitrary files via (1) a session over a Wi-Fi network or (2) a session over a USB connection in Development Mode.

EPSS

Процентиль: 52%
0.00287
Низкий