CVE-2020-6933

Severity CVSS v4.0:
Pending analysis
Type:
CWE-20 Input Validation
Publication date:
14/10/2020
Last modified:
29/10/2020

Description

An improper input validation vulnerability in the UEM Core of BlackBerry UEM version(s) 12.13.0, 12.12.1a QF2 (and earlier), and 12.11.1 QF3 (and earlier) could allow an attacker to potentially cause a Denial of Service (DoS) of the UEM Core service.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:blackberry:unified_endpoint_manager:*:*:*:*:*:*:*:* 12.11.1 (including)
cpe:2.3:a:blackberry:unified_endpoint_manager:12.11.1:quick_fix1:*:*:*:*:*:*
cpe:2.3:a:blackberry:unified_endpoint_manager:12.11.1:quick_fix2:*:*:*:*:*:*
cpe:2.3:a:blackberry:unified_endpoint_manager:12.11.1:quick_fix3:*:*:*:*:*:*
cpe:2.3:a:blackberry:unified_endpoint_manager:12.12.1a:-:*:*:*:*:*:*
cpe:2.3:a:blackberry:unified_endpoint_manager:12.12.1a:quick_fix1:*:*:*:*:*:*
cpe:2.3:a:blackberry:unified_endpoint_manager:12.12.1a:quick_fix2:*:*:*:*:*:*
cpe:2.3:a:blackberry:unified_endpoint_manager:12.13.0:*:*:*:*:*:*:*