Credential Recovery Vulnerability in BlackBerry AtHoc
CVE-2023-21520
5.3MEDIUM
What is CVE-2023-21520?
In BlackBerry AtHoc version 7.15, a vulnerability exists in the self-service credential recovery feature that enables attackers to perform PII enumeration. By exploiting this flaw, an attacker could associate a list of sensitive contact details with an organization using AtHoc IWS, potentially leading to unauthorized access to personal information.
Affected Version(s)
AtHoc 7.15