VYPR
High severity7.3NVD Advisory· Published May 13, 2021· Updated Jun 17, 2026

CVE-2021-22153

CVE-2021-22153

Description

A Remote Code Execution vulnerability in the Management Console component of BlackBerry UEM version(s) 12.13.1 QF2 and earlier and 12.12.1a QF6 and earlier could allow an attacker to potentially cause the spreadsheet application to run commands on the victim’s local machine with the authority of the user.

Affected products

13
  • cpe:2.3:a:blackberry:unified_endpoint_management:*:*:*:*:*:*:*:*+ 10 more
    • cpe:2.3:a:blackberry:unified_endpoint_management:*:*:*:*:*:*:*:*range: <=12.12.0
    • cpe:2.3:a:blackberry:unified_endpoint_management:12.12.1a:quick_fix_1:*:*:*:*:*:*
    • cpe:2.3:a:blackberry:unified_endpoint_management:12.12.1a:quick_fix_2:*:*:*:*:*:*
    • cpe:2.3:a:blackberry:unified_endpoint_management:12.12.1a:quick_fix_3:*:*:*:*:*:*
    • cpe:2.3:a:blackberry:unified_endpoint_management:12.12.1a:quick_fix_4:*:*:*:*:*:*
    • cpe:2.3:a:blackberry:unified_endpoint_management:12.12.1a:quick_fix_5:*:*:*:*:*:*
    • cpe:2.3:a:blackberry:unified_endpoint_management:12.12.1a:quick_fix_6:*:*:*:*:*:*
    • cpe:2.3:a:blackberry:unified_endpoint_management:12.13.0:-:*:*:*:*:*:*
    • cpe:2.3:a:blackberry:unified_endpoint_management:12.13.0:mr1:*:*:*:*:*:*
    • cpe:2.3:a:blackberry:unified_endpoint_management:12.13.1:quick_fix_1:*:*:*:*:*:*
    • cpe:2.3:a:blackberry:unified_endpoint_management:12.13.1:quick_fix_2:*:*:*:*:*:*
  • BlackBerry/UEMdescription
  • Blackberry/UEMllm-fuzzy
    Range: 12.13.1 QF2 and earlier, 12.12.1a QF6 and earlier

Patches

Vulnerability mechanics

References

1

News mentions

0

No linked articles in our index yet.