CVE-2017-17442: Blackberry Unified Endpoint Manager

Medium severity, CVSS 6.1. EPSS: 0.9% chance of exploitation in the next 30 days.

In BlackBerry UEM Management Console version 12.7.1 and earlier, a reflected cross-site scripting vulnerability that could allow an attacker to execute script commands in the context of the affected UEM Management Console account by crafting a malicious link and then persuading a user with legitimate access to the Management Console to click on the malicious link.

Affected products

  • Blackberry Unified Endpoint Manager: up to and including 12.7.1

Published 2018-03-13. Last modified 2026-06-17.