A PII Enumeration via Credential Recovery in the Self ServiceĀ (Credential Recovery) of BlackBerry AtHoc version 7.15 could allow an attacker to potentially associate a list of contact details with an AtHoc IWS organization.
References
Link | Resource |
---|---|
https://http://support.blackberry.com/kb/articleDetail?articleNumber=000112406 | Broken Link |
History
No history.
MITRE Information
Status: PUBLISHED
Assigner: blackberry
Published: 2023-09-12T19:45:51.105Z
Updated: 2023-09-12T19:45:51.105Z
Reserved: 2022-11-17T22:40:09.107Z
Link: CVE-2023-21520
JSON object: View
NVD Information
Status : Analyzed
Published: 2023-09-12T20:15:07.633
Modified: 2023-09-15T13:55:11.590
Link: CVE-2023-21520
JSON object: View
Redhat Information
No data.
CWE