Description
In BlackBerry UEM Management Console version 12.7.1 and earlier, a reflected cross-site scripting vulnerability that could allow an attacker to execute script commands in the context of the affected UEM Management Console account by crafting a malicious link and then persuading a user with legitimate access to the Management Console to click on the malicious link.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2017-8606 | In BlackBerry UEM Management Console version 12.7.1 and earlier, a reflected cross-site scripting vulnerability that could allow an attacker to execute script commands in the context of the affected UEM Management Console account by crafting a malicious link and then persuading a user with legitimate access to the Management Console to click on the malicious link. |
References
History
Tue, 17 Sep 2024 03:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | In BlackBerry UEM Management Console version 12.7.1 and earlier, a reflected cross-site scripting vulnerability that could allow an attacker to execute script commands in the context of the affected UEM Management Console account by crafting a malicious link and then persuading a user with legitimate access to the Management Console to click on the malicious link. | In BlackBerry UEM Management Console version 12.7.1 and earlier, a reflected cross-site scripting vulnerability that could allow an attacker to execute script commands in the context of the affected UEM Management Console account by crafting a malicious link and then persuading a user with legitimate access to the Management Console to click on the malicious link. |
Status: PUBLISHED
Assigner: blackberry
Published:
Updated: 2024-09-17T03:07:25.995Z
Reserved: 2017-12-06T00:00:00.000Z
Link: CVE-2017-17442
No data.
Status : Modified
Published: 2018-03-13T18:29:00.227
Modified: 2024-11-21T03:17:56.730
Link: CVE-2017-17442
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD