ZeroHour

CVE-2022-31686

CVSS 3.1
9.8 critical
EPSS
<1%p60
Published
()
Modified
Description

VMware Workspace ONE Assist prior to 22.10 contains a Broken Authentication Method vulnerability. A malicious actor with network access to Workspace ONE Assist may be able to obtain administrative access without the need to authenticate to the application.

Vendors
vmware
Products
workspace one assist
Weakness
CWE-287
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

In the news