Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2005-4417

Опубликовано: 20 дек. 2005
Источник: nvd
CVSS2: 6.4
EPSS Низкий

Описание

The default configuration of Widcomm Bluetooth for Windows (BTW) 4.0.1.1500 and earlier, as installed on Belkin Bluetooth Software 1.4.2 Build 10 and ANYCOM Blue USB-130-250 Software 4.0.1.1500, and possibly other devices, sets null Authentication and Authorization values, which allows remote attackers to send arbitrary audio and possibly eavesdrop using the microphone via the Hands Free Audio Gateway and Headset profile.

Уязвимые конфигурации

Конфигурация 1

Одно из

cpe:2.3:a:anycom:blue_usb-130-250_software:4.0.1.1500:*:*:*:*:*:*:*
cpe:2.3:a:belkin:bluetooth_software:1.4.2_build_10:*:*:*:*:*:*:*
cpe:2.3:a:widcomm:bluetooth_for_windows:4.0.1.1500:*:*:*:*:*:*:*

EPSS

Процентиль: 87%
0.03194
Низкий

6.4 Medium

CVSS2

Дефекты

NVD-CWE-Other

Связанные уязвимости

github
почти 4 года назад

The default configuration of Widcomm Bluetooth for Windows (BTW) 4.0.1.1500 and earlier, as installed on Belkin Bluetooth Software 1.4.2 Build 10 and ANYCOM Blue USB-130-250 Software 4.0.1.1500, and possibly other devices, sets null Authentication and Authorization values, which allows remote attackers to send arbitrary audio and possibly eavesdrop using the microphone via the Hands Free Audio Gateway and Headset profile.

EPSS

Процентиль: 87%
0.03194
Низкий

6.4 Medium

CVSS2

Дефекты

NVD-CWE-Other