Athoc Blackberry Athoc

Don't miss out!

Thousands of developers use stack.watch to stay informed.
Get an email whenever new security vulnerabilities are reported in Blackberry Athoc.

By the Year

In 2026 there have been 1 vulnerability in Blackberry Athoc with an average score of 5.3 out of ten. Last year, in 2025 Athoc had 1 security vulnerability published. At the current rates, it appears that the number of vulnerabilities last year and this year may equal out. However, the average CVE base score of the vulnerabilities in 2026 is greater by 0.30.




Year Vulnerabilities Average Score
2026 1 5.30
2025 1 5.00
2024 1 0.00
2023 4 6.00
2022 0 0.00
2021 0 0.00
2020 0 0.00
2019 1 0.00

It may take a day or so for new Athoc vulnerabilities to show up in the stats or in the list of recent security vulnerabilities. Additionally vulnerabilities may be tagged under a different product or component name.

Recent Blackberry Athoc Security Vulnerabilities

XSS in AtHoc IWS Web Portals before 7.21 HF-734
CVE-2026-18247 5.3 - Medium - August 11, 2026

A Cross Site Scripting (XSS) vulnerability in the Web Portals of AtHoc IWS in versions earlier than 7.21 HF-734 could allow an attacker to potentially execute actions in the context of the victim's session.

XSS

IDOR in AtHoc 7.21 Management Console
CVE-2025-12766 5 - Medium - November 19, 2025

An Insecure Direct Object Reference (IDOR) vulnerability in the Management Console of BlackBerry® AtHoc® (OnPrem) version 7.21 could allow an attacker to potentially gain unauthorized knowledge about other organizations hosted on the same Interactive Warning System (IWS).

Insecure Direct Object Reference / IDOR

BlackBerry AtHoc Management Console Stored XSS Vulnerability
CVE-2024-51723 - November 25, 2024

A Stored Cross-Site Scripting (XSS) vulnerability in the Management Console of BlackBerry AtHoc version 7.15 could allow an attacker to potentially execute actions in the context of the victim's session.

AtHoc 7.15 XSS in Management Console (User Mngmt & Alerts)
CVE-2023-21523 5.4 - Medium - September 12, 2023

A Stored Cross-site Scripting (XSS) vulnerability in the Management Console (User Management and Alerts) of BlackBerry AtHoc version 7.15 could allow an attacker to execute script commands in the context of the affected user account.

XSS

PII Enumeration via Credential Recovery in BlackBerry AtHoc 7.15
CVE-2023-21520 5.3 - Medium - September 12, 2023

A PII Enumeration via Credential Recovery in the Self Service (Credential Recovery) of BlackBerry AtHoc version 7.15 could allow an attacker to potentially associate a list of contact details with an AtHoc IWS organization.

Reflected XSS in BlackBerry AtHoc v7.15 Reports Console
CVE-2023-21522 6.1 - Medium - September 12, 2023

A Reflected Cross-site Scripting (XSS) vulnerability in the Management Console (Reports) of BlackBerry AtHoc version 7.15 could allow an attacker to potentially control a script that is executed in the victim's browser then they can execute script commands in the context of the affected user account. 

XSS

SQLi in BlackBerry AtHoc 7.15 Management Console Operator Audit Trail
CVE-2023-21521 7.2 - High - September 12, 2023

An SQL Injection vulnerability in the Management Console? (Operator Audit Trail) of BlackBerry AtHoc version 7.15 could allow an attacker to potentially read sensitive data from the database, modify database data (Insert/Update/Delete), execute administration operations on the database, recover the content of a given file present on the DBMS file system and in some cases issue commands to the operating system.

SQL Injection

An XML External Entity Injection (XXE) vulnerability in the Management System (console) of BlackBerry AtHoc versions earlier than 7.6 HF-567 could
CVE-2019-8997 - March 21, 2019

An XML External Entity Injection (XXE) vulnerability in the Management System (console) of BlackBerry AtHoc versions earlier than 7.6 HF-567 could allow an attacker to potentially read arbitrary local files from the application server or make requests on the network by entering maliciously crafted XML in an existing field.

Stay on top of Security Vulnerabilities

Want an email whenever new vulnerabilities are published for Blackberry Athoc or by Blackberry? Click the Watch button to subscribe.

Blackberry
Vendor

subscribe