CVE-2017-3890
EUVD-2017-1300713.01.2017, 09:59
A reflected cross-site scripting vulnerability in the BlackBerry WatchDox Server components Appliance-X, version 1.8.1 and earlier, and vAPP, versions 4.6.0 to 5.4.1, allows remote attackers to execute script commands in the context of the affected browser by persuading a user to click an attacker-supplied malicious link.
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| blackberry | appliance-x | 𝑥 ≤ 1.8.1 |
| blackberry | workspaces_vapp | 4.6.0 |
| blackberry | workspaces_vapp | 5.4.1 |
𝑥
= Vulnerable software versions