CVE-2014-1469: Blackberry Enterprise Service

Medium severity, CVSS 4.9. EPSS: 0.4% chance of exploitation in the next 30 days.

BlackBerry Enterprise Server 5.x before 5.0.4 MR7 and Enterprise Service 10.x before 10.2.2 log cleartext credentials during exception handling, which allows local users to obtain sensitive information by reading the exception log file.

Affected products

  • Blackberry Blackberry Enterprise Service: version 10.0 only; version 10.1.0 only; version 10.1.2 only; version 10.2.0 only; version 10.2.1 only
  • Blackberry Enterprise Server: up to and including 5.0.4
  • Blackberry Enterprise Server Express: version 5.0.4 only

Published 2014-08-18. Last modified 2026-06-17.