The BlackBerry Universal Device Service in BlackBerry Enterprise Service (BES) 10.0 through 10.1.2 does not properly restrict access to the JBoss Remote Method Invocation (RMI) interface, which allows remote attackers to upload and execute arbitrary packages via a request to port 1098.
Metrics
Affected Vendors & Products
References
History
No history.
MITRE
Status: PUBLISHED
Assigner: mitre
Published: 2013-10-11T22:00:00Z
Updated: 2024-09-16T23:16:47.093Z
Reserved: 2013-05-30T00:00:00Z
Link: CVE-2013-3693
Vulnrichment
No data.
NVD
Status : Modified
Published: 2013-10-11T22:55:36.267
Modified: 2023-11-07T02:16:00.787
Link: CVE-2013-3693
Redhat
No data.