A Reflected Cross-site Scripting (XSS) vulnerability in the Management Console (Reports) of BlackBerry AtHoc version 7.15 could allow an attacker to potentially control a script that is executed in the victim's browser then they can execute script commands in the context of the affected user account.
References
Link | Resource |
---|---|
https://support.blackberry.com/kb/articleDetail?articleNumber=000112406 | Vendor Advisory |
History
No history.
MITRE Information
Status: PUBLISHED
Assigner: blackberry
Published: 2023-09-12T18:29:24.729Z
Updated: 2023-09-12T19:50:40.805Z
Reserved: 2022-11-17T22:40:09.108Z
Link: CVE-2023-21522
JSON object: View
NVD Information
Status : Analyzed
Published: 2023-09-12T19:15:36.153
Modified: 2023-09-15T13:48:27.413
Link: CVE-2023-21522
JSON object: View
Redhat Information
No data.
CWE