CyberSec.Space Logo
返回 CVE 浏览器

CVE-2022-22954

🔥 Known Exploited (CISA KEV)CRITICAL
9.8
CVSS Severity Score
EPSS Score0.0000%
EPSS Percentile0.00th
Published2022-04-11
Last Modified2026-06-17
Data SourcesNVDCISA KEV

Vulnerability Description

VMware Workspace ONE Access and Identity Manager contain a remote code execution vulnerability due to server-side template injection. A malicious actor with network access can trigger a server-side template injection that may result in remote code execution.

Affected Platforms (CPE)

📦
Vmware

Identity Manager

= 3.3.3= 3.3.4= 3.3.5= 3.3.6
📦
Vmware

Vrealize Automation

= 7.6
📦
Vmware

Workspace One Access

= 20.10.0.0= 20.10.0.1= 21.08.0.0= 21.08.0.1
📦
Vmware

Cloud Foundation

>= 4.0 and <= 4.3.1

References & Advisories

相關資安分析文章

相关漏洞威胁