CyberSec.Space Logo
CVEブラウザに戻る

CVE-2021-22054

Known Exploited (CISA KEV)HIGH
7.5
CVSS Severity Score
EPSS Score76.1690%
EPSS Percentile90.19th
Published2021年12月17日
Last Modified2026年3月10日

Vulnerability Description

VMware Workspace ONE UEM console 20.0.8 prior to 20.0.8.37, 20.11.0 prior to 20.11.0.40, 21.2.0 prior to 21.2.0.27, and 21.5.0 prior to 21.5.0.37 contain an SSRF vulnerability. This issue may allow a malicious actor with network access to UEM to send their requests without authentication and to gain access to sensitive information.

Affected Platforms (CPE)

📦
Vmware

Workspace One Uem Console

>= 20.0.8.0 and < 20.0.8.36
📦
Vmware

Workspace One Uem Console

>= 20.11.0.0 and < 20.11.0.40
📦
Vmware

Workspace One Uem Console

>= 21.2.0.0 and < 21.2.0.27
📦
Vmware

Workspace One Uem Console

>= 21.5.0.0 and < 21.5.0.37

References & Advisories

関連する脆弱性情報