High severity7.5NVD Advisory· Published Apr 18, 2019· Updated Jun 17, 2026
CVE-2019-8999
CVE-2019-8999
Description
An XML External Entity vulnerability in the UEM Core of BlackBerry UEM version(s) earlier than 12.10.1a could allow an attacker to potentially gain read access to files on any system reachable by the UEM service account.
Affected products
3- cpe:2.3:a:blackberry:unified_endpoint_management:*:*:*:*:*:*:*:*Range: <=12.10.1a
- Range: <12.10.1a
- Range: <12.10.1a
Patches
Vulnerability mechanics
References
1- support.blackberry.com/kb/articleDetailnvdMitigationPatchVendor Advisory
News mentions
0No linked articles in our index yet.