CVE-2019-8999
Summary
| CVE | CVE-2019-8999 |
|---|---|
| State | PUBLIC |
| Assigner | [email protected] |
| Source Priority | CVE Program / NVD first with legacy fallback |
| Published | 2019-04-18 17:29:00 UTC |
| Updated | 2019-04-19 15:55:00 UTC |
| Description | An XML External Entity vulnerability in the UEM Core of BlackBerry UEM version(s) earlier than 12.10.1a could allow an attacker to potentially gain read access to files on any system reachable by the UEM service account. |
Risk And Classification
Problem Types: CWE-611
NVD Known Affected Configurations (CPE 2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Application | Blackberry | Unified Endpoint Management | All | All | All | All |
References
| Reference | Source | Link | Tags |
|---|---|---|---|
| BSRT-2019-002 Vulnerability in UEM Core Impacts BlackBerry UEM | MISC | support.blackberry.com | Mitigation, Patch, Vendor Advisory |
| CVE Program record | CVE.ORG | www.cve.org | canonical |
| NVD vulnerability detail | NVD | nvd.nist.gov | canonical, analysis |
No vendor comments have been submitted for this CVE.
There are currently no legacy QID mappings associated with this CVE.