BlackBerry 10 OS before 10.0.10.648 on BlackBerry Z10 smartphones uses weak permissions for a BlackBerry Protect object, which allows physically proximate attackers to bypass intended access restrictions by leveraging a user's BlackBerry Protect password-reset request and a user's installation of a crafted application.
2013-07-13T13:10:00.647
2025-04-11T00:51:21.963
Deferred
CVSSv2: 6.2 (MEDIUM)
AV:L/AC:H/Au:N/C:C/I:C/A:C
1.9
10.0
Type | Vendor | Product | Version/Range | Vulnerable? |
---|---|---|---|---|
Operating System | blackberry | blackberry_os | ≤ 10.0.10.261 | Yes |
Operating System | blackberry | blackberry_os | 10.0 | Yes |
Operating System | blackberry | blackberry_os | 10.0.10 | Yes |
Operating System | blackberry | blackberry_os | 10.0.10.85 | Yes |
Hardware | blackberry | z10 | - | Yes |