An Improper Input Validation in the BlackBerry UEM Management Console of BlackBerry UEM 12.23.0 QF8 and earlier allows Arbitrary File Download and Potential Denial of Service.
References
| Link | Resource |
|---|---|
| https://support.blackberry.com/pkb/s/article/141208 | Vendor Advisory |
Configurations
Configuration 1 (hide)
|
Configuration 2 (hide)
|
History
No history.
Information
Published : 2026-07-28 17:16
Updated : 2026-08-14 13:47
NVD link : CVE-2026-18085
Mitre link : CVE-2026-18085
CVE.ORG link : CVE-2026-18085
JSON object : View
Products Affected
blackberry
- unified_endpoint_manager
CWE
CWE-74
Improper Neutralization of Special Elements in Output Used by a Downstream Component ('Injection')
