ZeroHour

CVE-2022-31687

CVSS 3.1
9.8 critical
EPSS
<1%p57
Published
()
Modified
Description

VMware Workspace ONE Assist prior to 22.10 contains a Broken Access Control vulnerability. A malicious actor with network access to Workspace ONE Assist may be able to obtain administrative access without the need to authenticate to the application.

Vendors
vmware
Products
workspace one assist
Weakness
CWE-284
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

In the news