CVE-2021-22153: High severity blackberry unified endpoint management vulnerability
A Remote Code Execution vulnerability in the Management Console component of BlackBerry UEM version(s) 12.13.1 QF2 and earlier and 12.12.1a QF6 and earlier could allow an attacker to potentially cause the spreadsheet application to run commands on the victim’s local machine with the authority of the user.
Affected Software
Event History
Frequently Asked Questions
What is CVE-2021-22153?
CVE-2021-22153 is a Remote Code Execution vulnerability in the Management Console component of BlackBerry UEM.
What is the severity of CVE-2021-22153?
CVE-2021-22153 has a severity rating of 7.3 (High).
Which versions of BlackBerry UEM are affected by CVE-2021-22153?
BlackBerry UEM versions 12.13.1 QF2 and earlier, as well as 12.12.1a QF6 and earlier are affected by CVE-2021-22153.
How does CVE-2021-22153 exploit work?
CVE-2021-22153 allows an attacker to potentially run commands on the victim's local machine with the authority of the spreadsheet application.
How can I fix CVE-2021-22153?
To fix CVE-2021-22153, upgrade to BlackBerry UEM version 12.13.1 QF3 or 12.12.1a QF7 or later.