Information Disclosure in BlackBerry Enterprise Server Management Console
CVE-2016-3130
8.1HIGH
What is CVE-2016-3130?
An information disclosure vulnerability exists in the Core and Management Console of BlackBerry Enterprise Server versions 12 through 12.5.2. This flaw enables remote attackers to capture sensitive local or domain credentials of user or administrator accounts by intercepting and analyzing the network traffic during login attempts. Unauthorized access to these credentials can lead to significant security breaches within an organization's network, underscoring the necessity for securing data transmission protocols.
Affected Version(s)
BES12 through 12.5.2 BES12 versions through 12.5.2