CVE-2023-21520: Medium severity blackberry athoc vulnerability
A PII Enumeration via Credential Recovery in the Self Service (Credential Recovery) of BlackBerry AtHoc version 7.15 could allow an attacker to potentially associate a list of contact details with an AtHoc IWS organization.
Affected Software
Event History
Frequently Asked Questions
What is the vulnerability ID?
The vulnerability ID is CVE-2023-21520.
What is the title of the vulnerability?
The title of the vulnerability is 'A PII Enumeration via Credential Recovery in the Self Service (Credential Recovery) of BlackBerry AtHoc'.
What is the severity of CVE-2023-21520?
The severity of CVE-2023-21520 is medium with a CVSS score of 5.3.
How does CVE-2023-21520 impact BlackBerry AtHoc version 7.15?
CVE-2023-21520 could allow an attacker to potentially associate a list of contact details with an AtHoc IWS organization in BlackBerry AtHoc version 7.15.
Is there any fix available for CVE-2023-21520?
For information on how to fix CVE-2023-21520, please refer to the official BlackBerry support website at https://http://support.blackberry.com/kb/articleDetail?articleNumber=000112406.