Aller au contenu

Fiche vulnérabilité

CVE-2023-21521 : faille élevée blackberry athoc (CVSS 7.2)

Description

An SQL Injection vulnerability in the Management Console  (Operator Audit Trail) of BlackBerry AtHoc version 7.15 could allow an attacker to potentially read sensitive data from the database, modify database data (Insert/Update/Delete), execute administration operations on the database, recover the content of a given file present on the DBMS file system and in some cases issue commands to the operating system.

En bref

Sévérité
Élevée (CVSS 7.2)
Vecteur CVSS
CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H
Exploitation active
Non signalée par la CISA
Publication
12 sept. 2023
Dernière mise à jour
17 juin 2026

Produits concernés

  • blackberry athoc

Références

Rechercher une autre vulnérabilité dans la base CVE