vulnerability

VMware Workspace ONE Access: CVE-2022-22961: Information Disclosure Vulnerability (VMSA-2022-0011)

Severity
5
CVSS
(AV:N/AC:L/Au:N/C:P/I:N/A:N)
Published
Apr 11, 2022
Added
Apr 11, 2022
Modified
Apr 25, 2022

Description

VMware Workspace ONE Access, Identity Manager and vRealize Automation contain an information disclosure vulnerability due to returning excess information. A malicious actor with remote access may leak the hostname of the target system. Successful exploitation of this issue can lead to targeting victims.

Solution(s)

vmware-workspace-one-access-upgrade-20_10_0_0_17035009vmware-workspace-one-access-upgrade-20_10_0_1_17586971vmware-workspace-one-access-upgrade-21_08_0_0_18530336vmware-workspace-one-access-upgrade-21_08_0_1_19010796
Title
NEW

Explore Exposure Command

Confidently identify and prioritize exposures from endpoint to cloud with full attack surface visibility and threat-aware risk context.