Описание
An Improper Input Validation in the BlackBerry UEM Management Console of BlackBerry UEM 12.23.0 QF8 and earlier allows Arbitrary File Download and Potential Denial of Service.
Ссылки
- Vendor Advisory
Уязвимые конфигурации
Конфигурация 1
Одно из
cpe:2.3:a:blackberry:unified_endpoint_manager:12.23.0:-:*:*:*:*:*:*
cpe:2.3:a:blackberry:unified_endpoint_manager:12.23.0:quick_fix1:*:*:*:*:*:*
cpe:2.3:a:blackberry:unified_endpoint_manager:12.23.0:quick_fix2:*:*:*:*:*:*
cpe:2.3:a:blackberry:unified_endpoint_manager:12.23.0:quick_fix3:*:*:*:*:*:*
cpe:2.3:a:blackberry:unified_endpoint_manager:12.23.0:quick_fix4:*:*:*:*:*:*
cpe:2.3:a:blackberry:unified_endpoint_manager:12.23.0:quick_fix5:*:*:*:*:*:*
cpe:2.3:a:blackberry:unified_endpoint_manager:12.23.0:quick_fix6:*:*:*:*:*:*
cpe:2.3:a:blackberry:unified_endpoint_manager:12.23.0:quick_fix7:*:*:*:*:*:*
cpe:2.3:a:blackberry:unified_endpoint_manager:12.23.0:quick_fix8:*:*:*:*:*:*
Конфигурация 2
Одно из
cpe:2.3:a:blackberry:unified_endpoint_manager:12.22.1:-:*:*:*:*:*:*
cpe:2.3:a:blackberry:unified_endpoint_manager:12.22.1:quick_fix1:*:*:*:*:*:*
cpe:2.3:a:blackberry:unified_endpoint_manager:12.22.1:quick_fix2:*:*:*:*:*:*
cpe:2.3:a:blackberry:unified_endpoint_manager:12.22.1:quick_fix3:*:*:*:*:*:*
cpe:2.3:a:blackberry:unified_endpoint_manager:12.22.1:quick_fix4:*:*:*:*:*:*
cpe:2.3:a:blackberry:unified_endpoint_manager:12.22.1:quick_fix5:*:*:*:*:*:*
cpe:2.3:a:blackberry:unified_endpoint_manager:12.22.1:quick_fix6:*:*:*:*:*:*
cpe:2.3:a:blackberry:unified_endpoint_manager:12.22.1:quick_fix7:*:*:*:*:*:*
EPSS
Процентиль: 5%
0.00157
Низкий
6.9 Medium
CVSS3
Дефекты
CWE-74
Связанные уязвимости
CVSS3: 6.9
github
около 2 месяцев назад
An Improper Input Validation in the BlackBerry UEM Management Console of BlackBerry UEM 12.23.0 QF8 and earlier allows Arbitrary File Download and Potential Denial of Service.
EPSS
Процентиль: 5%
0.00157
Низкий
6.9 Medium
CVSS3
Дефекты
CWE-74