CyberSec.Space Logo
Back to CVE Browser

CVE-2021-22054

Known Exploited (CISA KEV)HIGH
7.5
CVSS Severity Score
EPSS Score76.1690%
EPSS Percentile90.19th
PublishedDec 17, 2021
Last ModifiedMar 10, 2026

Vulnerability Description

VMware Workspace ONE UEM console 20.0.8 prior to 20.0.8.37, 20.11.0 prior to 20.11.0.40, 21.2.0 prior to 21.2.0.27, and 21.5.0 prior to 21.5.0.37 contain an SSRF vulnerability. This issue may allow a malicious actor with network access to UEM to send their requests without authentication and to gain access to sensitive information.

Affected Platforms (CPE)

πŸ“¦
Vmware

Workspace One Uem Console

>= 20.0.8.0 and < 20.0.8.36
πŸ“¦
Vmware

Workspace One Uem Console

>= 20.11.0.0 and < 20.11.0.40
πŸ“¦
Vmware

Workspace One Uem Console

>= 21.2.0.0 and < 21.2.0.27
πŸ“¦
Vmware

Workspace One Uem Console

>= 21.5.0.0 and < 21.5.0.37

References & Advisories

Related Vulnerabilities