CVE

Id
81389  
CVE No.
CVE-2015-4112  
Status
Candidate  
Description
The Management Console in BlackBerry Enterprise Server (BES) 12 before 12.2 does not properly restrict use of FRAME elements, which makes it easier for remote attackers to conduct clickjacking attacks via a crafted web site, related to a "cross frame scripting" issue.  
Phase
Assigned (20150528)  
Votes
None (candidate not yet proposed)  
Comments