An XML External Entity vulnerability in the UEM Core of BlackBerry UEM version(s) earlier than 12.10.1a could allow an attacker to potentially gain read access to files on any system reachable by the UEM service account.
References
Link | Resource |
---|---|
http://support.blackberry.com/kb/articleDetail?articleNumber=000056241 | Mitigation Patch Vendor Advisory |
http://support.blackberry.com/kb/articleDetail?articleNumber=000056241 | Mitigation Patch Vendor Advisory |
Configurations
History
21 Nov 2024, 04:50
Type | Values Removed | Values Added |
---|---|---|
References | () http://support.blackberry.com/kb/articleDetail?articleNumber=000056241 - Mitigation, Patch, Vendor Advisory |
Information
Published : 2019-04-18 17:29
Updated : 2024-11-21 04:50
NVD link : CVE-2019-8999
Mitre link : CVE-2019-8999
CVE.ORG link : CVE-2019-8999
JSON object : View
Products Affected
blackberry
- unified_endpoint_management
CWE
CWE-611
Improper Restriction of XML External Entity Reference