CVE-2022-31656
05.08.2022, 16:15
VMware Workspace ONE Access, Identity Manager and vRealize Automation contain an authentication bypass vulnerability affecting local domain users. A malicious actor with network access to the UI may be able to obtain administrative access without the need to authenticate.Enginsight
Vendor | Product | Version |
---|---|---|
vmware | identity_manager | 3.3.4 |
vmware | identity_manager | 3.3.5 |
vmware | identity_manager | 3.3.6 |
vmware | one_access | 21.08.0.0 |
vmware | one_access | 21.08.0.1 |
vmware | access_connector | 21.08.0.0 |
vmware | access_connector | 21.08.0.1 |
vmware | access_connector | 22.05 |
vmware | identity_manager_connector | 3.3.4 |
vmware | identity_manager_connector | 3.3.5 |
vmware | identity_manager_connector | 3.3.6 |
vmware | identity_manager_connector | 19.03.0.1 |
𝑥
= Vulnerable software versions