CVE-2017-9367
9.8
Vector
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Exploitability: 3.9 / Impact: 5.9
Source: NVD
Description
A directory traversal vulnerability in the BlackBerry Workspaces Server could potentially allow an attacker to execute or upload arbitrary files, or reveal the content of arbitrary files anywhere on the web server by crafting a URL with a manipulated POST request.
Affected (18)
Products: Blackberry: Workspaces Vapp, Workspaces Appliance X
Configuration A
| Vulnerable Software | Affected Versions |
|---|---|
| Version 5.5.0 |
Configuration B
| Vulnerable Software | Affected Versions |
|---|---|
| Version 5.6.0 |
Configuration C
| Vulnerable Software | Affected Versions |
|---|---|
| Up to 1.11.2 |
References (2)
Source: secure@blackberry.com
Vendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Vendor Advisory
Timeline
No history available yet.