CVE-2016-3126
- EPSS 0.25%
- Published 22.04.2016 18:59:07
- Last modified 12.04.2025 10:46:40
Cross-site scripting (XSS) vulnerability in the Management Console in BlackBerry Enterprise Server (BES) 12 before 12.4.1 allows remote attackers to inject arbitrary web script or HTML via a crafted URL.
CVE-2016-1918
- EPSS 0.25%
- Published 22.04.2016 18:59:04
- Last modified 12.04.2025 10:46:40
Cross-site scripting (XSS) vulnerability in the Management Console in BlackBerry Enterprise Server (BES) 12 before 12.4.1 allows remote attackers to inject arbitrary web script or HTML via a crafted URL, a different vulnerability than CVE-2016-1917.
CVE-2016-1917
- EPSS 0.25%
- Published 22.04.2016 18:59:03
- Last modified 12.04.2025 10:46:40
Cross-site scripting (XSS) vulnerability in the Management Console in BlackBerry Enterprise Server (BES) 12 before 12.4.1 allows remote attackers to inject arbitrary web script or HTML via a crafted URL, a different vulnerability than CVE-2016-1918.
CVE-2016-1916
- EPSS 0.19%
- Published 22.04.2016 18:59:02
- Last modified 12.04.2025 10:46:40
Cross-site scripting (XSS) vulnerability in the Management Console in BlackBerry Enterprise Server (BES) 12 before 12.4.1 allows remote authenticated users to inject arbitrary web script or HTML by leveraging basic administrative access to create a c...
CVE-2015-4112
- EPSS 0.22%
- Published 19.11.2015 11:59:00
- Last modified 12.04.2025 10:46:40
The Management Console in BlackBerry Enterprise Server (BES) 12 before 12.2 does not properly restrict use of FRAME elements, which makes it easier for remote attackers to conduct clickjacking attacks via a crafted web site, related to a "cross frame...
CVE-2014-1469
- EPSS 0.06%
- Published 18.08.2014 11:15:25
- Last modified 12.04.2025 10:46:40
BlackBerry Enterprise Server 5.x before 5.0.4 MR7 and Enterprise Service 10.x before 10.2.2 log cleartext credentials during exception handling, which allows local users to obtain sensitive information by reading the exception log file.
- EPSS 0.26%
- Published 14.02.2014 13:10:30
- Last modified 11.04.2025 00:51:21
BlackBerry Enterprise Service 10 before 10.2.1, Universal Device Service 6, Enterprise Server Express for Domino through 5.0.4, Enterprise Server Express for Exchange through 5.0.4, Enterprise Server for Domino through 5.0.4 MR6, Enterprise Server fo...
CVE-2008-3246
- EPSS 26.16%
- Published 21.07.2008 16:41:00
- Last modified 09.04.2025 00:30:58
Unspecified vulnerability in the PDF distiller component in the BlackBerry Attachment Service in BlackBerry Unite! 1.0 SP1 (1.0.1) before bundle 36 and BlackBerry Enterprise Server 4.1 SP3 (4.1.3) through 4.1 SP5 (4.1.5) allows user-assisted remote a...