📦

affix

Vendor: nokia

Actively Exploited 0 CISA KEV List
PoC / Exploits 3 Code Available
Total RCEs 3 Remote Access
Total CVEs 4 Total Indexed
Avg. EPSS 4.88% Exploit Prob.
Latest CVE CVE-2005-2716 Aug 29

Security Vulnerability Index

Page 1 / 1
7.5 CVSS

The event_pin_code_request function in the btsrv daemon (btsrv.c) in Nokia Affix 2.1.2 and 3.2.0 allows remote attackers to execute arbitrary commands via shell metacharacters in a Bluetooth device name.

EPSS: 1.77%
10.0 CVSS
CVE-2005-2277
RCE Exploit Found

Bluetooth FTP client (BTFTP) in Nokia Affix 2.1.2 and 3.2.0 allows remote attackers to execute arbitrary commands via shell metacharacters in the filename argument of a PUT command.

EPSS: 8.54%
7.5 CVSS
CVE-2005-2250
RCE Exploit Found

Buffer overflow in Bluetooth FTP client (BTFTP) in Nokia Affix 2.1.2 and 3.2.0 allows remote attackers to execute arbitrary code via a long filename in an OBEX file share.

EPSS: 8.98%
7.2 CVSS
CVE-2005-1294
Exploit Found

The affix_sock_register in the Affix Bluetooth Protocol Stack for Linux might allow local users to gain privileges via a socket call with a negative protocol value, which is used as an array index.

EPSS: 0.22%