Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
No advisories yet.
| Link | Providers |
|---|---|
| https://support.blackberry.com/pkb/s/article/141248 |
|
Tue, 11 Aug 2026 17:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Tue, 11 Aug 2026 16:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | A Cross Site Scripting (XSS) vulnerability in the Web Portals of AtHoc IWS in versions earlier than 7.21 HF-734 could allow an attacker to potentially execute actions in the context of the victim's session. | |
| Title | DOM-Based Cross-Site Scripting in BlackBerry AtHoc Web Portals | |
| Weaknesses | CWE-79 | |
| References |
| |
| Metrics |
cvssV4_0
|
Subscriptions
No data.
Status: PUBLISHED
Assigner: blackberry
Published:
Updated: 2026-08-11T16:49:34.883Z
Reserved: 2026-07-29T14:59:50.726Z
Link: CVE-2026-18247
Updated: 2026-08-11T16:49:19.324Z
Status : Received
Published: 2026-08-11T17:17:48.220
Modified: 2026-08-11T17:17:48.220
Link: CVE-2026-18247
No data.
OpenCVE Enrichment
No data.