High severity8.2NVD Advisory· Published Jan 13, 2017· Updated Jun 17, 2026
CVE-2016-3128
CVE-2016-3128
Description
A spoofing vulnerability in the Core of BlackBerry Enterprise Server (BES) 12 through 12.5.2 allows remote attackers to enroll an illegitimate device to the BES, gain access to device parameters for the BES, or send false information to the BES by gaining access to specific information about a device that was legitimately enrolled on the BES.
Affected products
13cpe:2.3:a:blackberry:enterprise_service:12.0.0:*:*:*:*:*:*:*+ 11 more
- cpe:2.3:a:blackberry:enterprise_service:12.0.0:*:*:*:*:*:*:*
- cpe:2.3:a:blackberry:enterprise_service:12.0.1:*:*:*:*:*:*:*
- cpe:2.3:a:blackberry:enterprise_service:12.1.0:*:*:*:*:*:*:*
- cpe:2.3:a:blackberry:enterprise_service:12.2.0:*:*:*:*:*:*:*
- cpe:2.3:a:blackberry:enterprise_service:12.2.1:*:*:*:*:*:*:*
- cpe:2.3:a:blackberry:enterprise_service:12.3.0:*:*:*:*:*:*:*
- cpe:2.3:a:blackberry:enterprise_service:12.3.1:*:*:*:*:*:*:*
- cpe:2.3:a:blackberry:enterprise_service:12.4.0:*:*:*:*:*:*:*
- cpe:2.3:a:blackberry:enterprise_service:12.4.1:*:*:*:*:*:*:*
- cpe:2.3:a:blackberry:enterprise_service:12.5.0a:*:*:*:*:*:*:*
- cpe:2.3:a:blackberry:enterprise_service:12.5.1:*:*:*:*:*:*:*
- cpe:2.3:a:blackberry:enterprise_service:12.5.2:*:*:*:*:*:*:*
- Range: <=12.5.2
Patches
Vulnerability mechanics
References
3- support.blackberry.com/kb/articleDetailnvdMitigationVendor Advisory
- www.securityfocus.com/bid/95624nvd
- www.securitytracker.com/id/1037585nvd
News mentions
0No linked articles in our index yet.