Security Advisory

CVE-2017-3890

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2017-01-13 09:00:00
Last updated 2024-08-05 14:39:41
Assigner blackberry
State PUBLISHED

Description

A reflected cross-site scripting vulnerability in the BlackBerry WatchDox Server components Appliance-X, version 1.8.1 and earlier, and vAPP, versions 4.6.0 to 5.4.1, allows remote attackers to execute script commands in the context of the affected browser by persuading a user to click an attacker-supplied malicious link.