MEDIUM · 5.8

CVE-2013-6798

BlackBerry Link before 1.2.1.31 on Windows and before 1.1.1 build 39 on Mac OS X does not properly determine the user account for execution of Peer Manager in certain situations involving successive l...

Vulnerability Description

BlackBerry Link before 1.2.1.31 on Windows and before 1.1.1 build 39 on Mac OS X does not properly determine the user account for execution of Peer Manager in certain situations involving successive logins with different accounts, which allows context-dependent attackers to bypass intended restrictions on remote file-access folders via IPv6 WebDAV requests, a different vulnerability than CVE-2013-3694.

CVSS Score

5.8

MEDIUM

AV:N/AC:M/Au:N/C:P/I:P/A:N
Confidentiality
PARTIAL
Integrity
PARTIAL
Availability
NONE

Affected Products

VendorProductVersions
BlackberryBlackberry Link<= 1.2.0.28
MicrosoftWindowsAll versions
AppleMac Os XAll versions

Related Weaknesses (CWE)

References

FAQ

What is CVE-2013-6798?

CVE-2013-6798 is a vulnerability with a CVSS score of 5.8 (MEDIUM). BlackBerry Link before 1.2.1.31 on Windows and before 1.1.1 build 39 on Mac OS X does not properly determine the user account for execution of Peer Manager in certain situations involving successive l...

How severe is CVE-2013-6798?

CVE-2013-6798 has been rated MEDIUM with a CVSS base score of 5.8/10. Review the CVSS metrics above for detailed severity breakdown.

Is there a patch for CVE-2013-6798?

Check the references section above for vendor advisories and patch information. Affected products include: Blackberry Blackberry Link, Microsoft Windows, Apple Mac Os X.