Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
athoc vulnerabilities and exploits
(subscribe to this query)
NA
CVE-2005-0187
Stack-based buffer overflow in the SetSkin function in AtHoc toolbar allows remote malicious users to execute arbitrary code via a long skin name.
Athoc Athoc Toolbar
NA
CVE-2005-0188
Format string vulnerability in the SetBaseURL function in AtHoc toolbar allows remote malicious users to execute arbitrary code via format string specifiers in an invalid URL that is recorded in the debug log.
Athoc Athoc Toolbar
5.9
CVSSv3
CVE-2019-8997
An XML External Entity Injection (XXE) vulnerability in the Management System (console) of BlackBerry AtHoc versions earlier than 7.6 HF-567 could allow an malicious user to potentially read arbitrary local files from the application server or make requests on the network by ente...
Blackberry Athoc
1 Github repository
5.3
CVSSv3
CVE-2023-21520
A PII Enumeration via Credential Recovery in the Self Service (Credential Recovery) of BlackBerry AtHoc version 7.15 could allow an malicious user to potentially associate a list of contact details with an AtHoc IWS organization.
Blackberry Athoc 7.15
7.2
CVSSv3
CVE-2023-21521
An SQL Injection vulnerability in the Management Console? (Operator Audit Trail) of BlackBerry AtHoc version 7.15 could allow an malicious user to potentially read sensitive data from the database, modify database data (Insert/Update/Delete), execute administration operations on...
Blackberry Athoc 7.15
6.1
CVSSv3
CVE-2023-21522
A Reflected Cross-site Scripting (XSS) vulnerability in the Management Console (Reports) of BlackBerry AtHoc version 7.15 could allow an malicious user to potentially control a script that is executed in the victim's browser then they can execute script commands in the cont...
Blackberry Athoc 7.15
5.4
CVSSv3
CVE-2023-21523
A Stored Cross-site Scripting (XSS) vulnerability in the Management Console (User Management and Alerts) of BlackBerry AtHoc version 7.15 could allow an malicious user to execute script commands in the context of the affected user account.
Blackberry Athoc 7.15
CVSSv3
CVSSv2
CVSSv3
VMScore
Recommendations:
blind SQL injection
SSRF
buffer overflow
CVE-2023-28952
CVE-2023-41822
CVE-2024-27956
CVE-2023-7028
CVE-2024-34447
CVE-2024-34460
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started