CVE-2022-31657
05.08.2022, 16:15
VMware Workspace ONE Access and Identity Manager contain a URL injection vulnerability. A malicious actor with network access may be able to redirect an authenticated user to an arbitrary domain.
Vendor | Product | Version |
---|---|---|
vmware | identity_manager | 3.3.4 |
vmware | identity_manager | 3.3.5 |
vmware | identity_manager | 3.3.6 |
vmware | one_access | 21.08.0.0 |
vmware | one_access | 21.08.0.1 |
vmware | access_connector | 21.08.0.0 |
vmware | access_connector | 21.08.0.1 |
vmware | access_connector | 22.05 |
vmware | identity_manager_connector | 3.3.4 |
vmware | identity_manager_connector | 3.3.5 |
vmware | identity_manager_connector | 3.3.6 |
vmware | identity_manager_connector | 19.03.0.1 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration