PT-2026-65531 · Blackberry · Blackberry Uem

·

CVE-2026-18085

·

Published

2026-07-28

·

Updated

2026-08-14

CVSS v3.1

6.9

Medium

VectorAV:N/AC:H/PR:N/UI:R/S:C/C:N/I:L/A:H
Name of the Vulnerable Software and Affected Versions BlackBerry UEM versions prior to 12.23.0 QF9
Description Improper input validation in the BlackBerry UEM Management Console allows for arbitrary file download and potential denial of service. This occurs when the system fails to properly verify the input provided to the console, enabling an attacker to retrieve sensitive files or crash the service.
Recommendations Update BlackBerry UEM to version 12.23.0 QF9 or later.

Fix

DoS

Special Elements Injection

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2026-18085

Affected Products

Blackberry Uem