CVE-2018-8892: CSRF
A cross-site request forgery (CSRF) vulnerability in the Management Console of BlackBerry UEM versions earlier than 12.9.1 could allow an attacker to make modifications to the UEM settings in the context of a Management Console administrator.
Affected Software
Event History
Frequently Asked Questions
What is CVE-2018-8892?
CVE-2018-8892 is a cross-site request forgery (CSRF) vulnerability in the Management Console of BlackBerry UEM versions earlier than 12.9.1.
How does CVE-2018-8892 affect BlackBerry UEM?
CVE-2018-8892 allows an attacker to make modifications to the UEM settings in the context of a Management Console administrator.
What is the severity of CVE-2018-8892?
CVE-2018-8892 has a severity rating of 6.5 out of 10, which is considered medium.
How can I fix CVE-2018-8892?
To fix CVE-2018-8892, update BlackBerry UEM to version 12.9.1 or later.
Where can I find more information about CVE-2018-8892?
You can find more information about CVE-2018-8892 on the BlackBerry support website at http://support.blackberry.com/kb/articleDetail?articleNumber=000054162.