CVE-2020-6933
Severity CVSS v4.0:
Pending analysis
Type:
CWE-20
Input Validation
Publication date:
14/10/2020
Last modified:
29/10/2020
Description
An improper input validation vulnerability in the UEM Core of BlackBerry UEM version(s) 12.13.0, 12.12.1a QF2 (and earlier), and 12.11.1 QF3 (and earlier) could allow an attacker to potentially cause a Denial of Service (DoS) of the UEM Core service.
Impact
Base Score 3.x
5.50
Severity 3.x
MEDIUM
Base Score 2.0
2.10
Severity 2.0
LOW
Vulnerable products and versions
| CPE | From | Up to |
|---|---|---|
| cpe:2.3:a:blackberry:unified_endpoint_manager:*:*:*:*:*:*:*:* | 12.11.1 (including) | |
| cpe:2.3:a:blackberry:unified_endpoint_manager:12.11.1:quick_fix1:*:*:*:*:*:* | ||
| cpe:2.3:a:blackberry:unified_endpoint_manager:12.11.1:quick_fix2:*:*:*:*:*:* | ||
| cpe:2.3:a:blackberry:unified_endpoint_manager:12.11.1:quick_fix3:*:*:*:*:*:* | ||
| cpe:2.3:a:blackberry:unified_endpoint_manager:12.12.1a:-:*:*:*:*:*:* | ||
| cpe:2.3:a:blackberry:unified_endpoint_manager:12.12.1a:quick_fix1:*:*:*:*:*:* | ||
| cpe:2.3:a:blackberry:unified_endpoint_manager:12.12.1a:quick_fix2:*:*:*:*:*:* | ||
| cpe:2.3:a:blackberry:unified_endpoint_manager:12.13.0:*:*:*:*:*:*:* |
To consult the complete list of CPE names with products and versions, see this page



