CVE-2008-3246

EUVD-2008-3234
Unspecified vulnerability in the PDF distiller component in the BlackBerry Attachment Service in BlackBerry Unite! 1.0 SP1 (1.0.1) before bundle 36 and BlackBerry Enterprise Server 4.1 SP3 (4.1.3) through 4.1 SP5 (4.1.5) allows user-assisted remote attackers to execute arbitrary code via a crafted PDF file attachment.
Code Injection
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTPrimary
9.3 UNKNOWN
NETWORK
MEDIUM
AV:N/AC:M/Au:N/C:C/I:C/A:C
Base Score
CVSS 3.x
EPSS Score
Percentile: 96%
Affected Products (NVD)
VendorProductVersion
blackberryenterprise_server
4.1:sp3
blackberryenterprise_server
4.1.3
blackberryenterprise_server
4.1.4
blackberryenterprise_server
4.1.5
blackberryunite
1.0:sp1
blackberryunite
1.0.1
rimblackberry_enterprise_server
4.1.3
rimblackberry_enterprise_server
4.1.4
rimblackberry_enterprise_server
4.1.5
rimblackberry_enterprise_server_for_domino
*
rimblackberry_enterprise_server_for_exchange
*
rimblackberry_enterprise_server_for_novell_groupwise
*
rimblackberry_unite
1.0:sp1
rimblackberry_unite
1.0.1
𝑥
= Vulnerable software versions