Vulnerability Description
Directory traversal vulnerability in Widcomm Bluetooth for Windows (BTW) 3.0.1.905 allows remote attackers to conduct unauthorized file operations via a .. (dot dot) in an unspecified parameter.
CVSS Score
MEDIUM
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Widcomm | Bluetooth For Windows | 3.0.1.905 |
References
- http://events.ccc.de/congress/2006-mediawiki//images/f/fb/23c3_Bluetooh_revisite
- http://osvdb.org/37590
- http://www.securityfocus.com/archive/1/455889/100/0/threaded
- http://events.ccc.de/congress/2006-mediawiki//images/f/fb/23c3_Bluetooh_revisite
- http://osvdb.org/37590
- http://www.securityfocus.com/archive/1/455889/100/0/threaded
FAQ
What is CVE-2006-6897?
CVE-2006-6897 is a vulnerability with a CVSS score of 5.4 (MEDIUM). Directory traversal vulnerability in Widcomm Bluetooth for Windows (BTW) 3.0.1.905 allows remote attackers to conduct unauthorized file operations via a .. (dot dot) in an unspecified parameter.
How severe is CVE-2006-6897?
CVE-2006-6897 has been rated MEDIUM with a CVSS base score of 5.4/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2006-6897?
Check the references section above for vendor advisories and patch information. Affected products include: Widcomm Bluetooth For Windows.