Back to search
CVE-2016-3130
Published: Jan 13, 2017
Modified: Aug 5, 2024
PUBLISHED
Description
An information disclosure vulnerability in the Core and Management Console in BlackBerry Enterprise Server (BES) 12 through 12.5.2 allows remote attackers to obtain local or domain credentials of an administrator or user account by sniffing traffic between the two elements during a login attempt.
| Vendor | Product | Versions |
|---|---|---|
n/a | BES12 versions through 12.5.2 | affected BES12 versions through 12.5.2 |
References
http://support.blackberry.com/kb/articleDetail?articleNumber=000038914
x_refsource_CONFIRM
95924
vdb-entry
x_refsource_BID
1037584
vdb-entry
x_refsource_SECTRACK
Security Training
Train your team to recognize and prevent security threats with our comprehensive security awareness program.
Start TrainingVulnerability Scanning
Discover vulnerabilities in your applications and infrastructure before attackers do.
Scan Now