CVE-2023-21522: Blackberry Athoc

Medium severity, CVSS 6.1. EPSS: 0.4% chance of exploitation in the next 30 days.

A Reflected Cross-site Scripting (XSS) vulnerability in the Management Console (Reports) of BlackBerry AtHoc version 7.15 could allow an attacker to potentially control a script that is executed in the victim's browser then they can execute script commands in the context of the affected user account. 

Affected products

Published 2023-09-12. Last modified 2026-06-17.