CVE-2017-9367
Summary
| CVE | CVE-2017-9367 |
|---|---|
| State | PUBLIC |
| Assigner | [email protected] |
| Source Priority | CVE Program / NVD first with legacy fallback |
| Published | 2017-10-16 21:29:00 UTC |
| Updated | 2017-11-08 18:45:00 UTC |
| Description | A directory traversal vulnerability in the BlackBerry Workspaces Server could potentially allow an attacker to execute or upload arbitrary files, or reveal the content of arbitrary files anywhere on the web server by crafting a URL with a manipulated POST request. |
Risk And Classification
Problem Types: CWE-22
NVD Known Affected Configurations (CPE 2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Application | Blackberry | Workspaces Appliance-x | All | All | All | All |
| Application | Blackberry | Workspaces Vapp | 5.5.0 | All | All | All |
| Application | Blackberry | Workspaces Vapp | 5.5.1 | All | All | All |
| Application | Blackberry | Workspaces Vapp | 5.5.2 | All | All | All |
| Application | Blackberry | Workspaces Vapp | 5.5.3 | All | All | All |
| Application | Blackberry | Workspaces Vapp | 5.5.4 | All | All | All |
| Application | Blackberry | Workspaces Vapp | 5.5.5 | All | All | All |
| Application | Blackberry | Workspaces Vapp | 5.5.6 | All | All | All |
| Application | Blackberry | Workspaces Vapp | 5.5.7 | All | All | All |
| Application | Blackberry | Workspaces Vapp | 5.5.8 | All | All | All |
| Application | Blackberry | Workspaces Vapp | 5.5.9 | All | All | All |
| Application | Blackberry | Workspaces Vapp | 5.6.0 | All | All | All |
| Application | Blackberry | Workspaces Vapp | 5.6.1 | All | All | All |
| Application | Blackberry | Workspaces Vapp | 5.6.2 | All | All | All |
| Application | Blackberry | Workspaces Vapp | 5.6.3 | All | All | All |
| Application | Blackberry | Workspaces Vapp | 5.6.4 | All | All | All |
| Application | Blackberry | Workspaces Vapp | 5.6.5 | All | All | All |
| Application | Blackberry | Workspaces Vapp | 5.6.6 | All | All | All |
| Application | Blackberry | Workspaces Vapp | 5.5.0 | All | All | All |
| Application | Blackberry | Workspaces Vapp | 5.5.1 | All | All | All |
| Application | Blackberry | Workspaces Vapp | 5.5.2 | All | All | All |
| Application | Blackberry | Workspaces Vapp | 5.5.3 | All | All | All |
| Application | Blackberry | Workspaces Vapp | 5.5.4 | All | All | All |
| Application | Blackberry | Workspaces Vapp | 5.5.5 | All | All | All |
| Application | Blackberry | Workspaces Vapp | 5.5.6 | All | All | All |
| Application | Blackberry | Workspaces Vapp | 5.5.7 | All | All | All |
| Application | Blackberry | Workspaces Vapp | 5.5.8 | All | All | All |
| Application | Blackberry | Workspaces Vapp | 5.5.9 | All | All | All |
| Application | Blackberry | Workspaces Vapp | 5.6.0 | All | All | All |
| Application | Blackberry | Workspaces Vapp | 5.6.1 | All | All | All |
| Application | Blackberry | Workspaces Vapp | 5.6.2 | All | All | All |
| Application | Blackberry | Workspaces Vapp | 5.6.3 | All | All | All |
| Application | Blackberry | Workspaces Vapp | 5.6.4 | All | All | All |
| Application | Blackberry | Workspaces Vapp | 5.6.5 | All | All | All |
| Application | Blackberry | Workspaces Vapp | 5.6.6 | All | All | All |
References
| Reference | Source | Link | Tags |
|---|---|---|---|
| BSRT-2017-006 Vulnerabilities in Workspaces Server components impact BlackBerry Workspaces | CONFIRM | support.blackberry.com | Vendor Advisory |
| CVE Program record | CVE.ORG | www.cve.org | canonical |
| NVD vulnerability detail | NVD | nvd.nist.gov | canonical, analysis |
No vendor comments have been submitted for this CVE.
There are currently no legacy QID mappings associated with this CVE.