CVE-2006-1365
Published Mar 23, 2006
Last updated a year ago
Overview
- Description
- The Motorola PEBL U6, the Motorola V600, and possibly the Motorola E398 and other Motorola phones allow remote attackers to add an entry for their own Bluetooth device to a target device's list of trusted devices (aka Device History), and possibly obtain AT level access to the target device, by initiating and interrupting an OBEX Push Profile that pretends to send a vCard, aka a "HeloMoto" attack.
- Source
- cve@mitre.org
- NVD status
- Modified
Social media
- Hype score
- Not currently trending
Risk scores
CVSS 2.0
- Type
- Primary
- Base score
- 5
- Impact score
- 2.9
- Exploitability score
- 10
- Vector string
- AV:N/AC:L/Au:N/C:N/I:P/A:N
Weaknesses
- nvd@nist.gov
- NVD-CWE-Other
Configurations
[ { "nodes": [ { "negate": false, "cpeMatch": [ { "criteria": "cpe:2.3:h:motorola:e398:*:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "6472146A-2D5E-4E2C-B609-286D6D0DBD0C" }, { "criteria": "cpe:2.3:h:motorola:pebl_u6:08.83.76r:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "0F2FE8AA-E373-492D-978B-AF95D3EDE989" }, { "criteria": "cpe:2.3:h:motorola:v600:*:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "21807BE8-84AE-40D2-B241-DF63BDC741E6" } ], "operator": "OR" } ] } ]