vendor:
Multiple Nokia Phones
by:
Penetration Test Team Of NCNIPC (China)
7.8
CVSS
HIGH
Denial-of-Service
399
CWE
Product Name: Multiple Nokia Phones
Affected Version From: N70 and N73 phones
Affected Version To: N70 and N73 phones
Patch Exists: NO
Related CWE: N/A
CPE: N/A
Metasploit:
N/A
Other Scripts:
N/A
Tags: N/A
CVSS Metrics: N/A
Nuclei References:
N/A
Nuclei Metadata: N/A
Platforms Tested: Windows XP SP2
2008
Multiple Nokia Phones Remote Denial-of-Service Vulnerability
Multiple Nokia phones are prone to a remote denial-of-service vulnerability in their handling of the Object Exchange protocol. Attackers may exploit this issue to crash a vulnerable phone, creating a denial-of-service condition. Note that attackers must be able to communicate with the device via Bluetooth to take advantage of this issue.
Mitigation:
Ensure that Bluetooth is disabled on the device, or that the device is not discoverable.