VMware Alert
2692Warning Date
Severity Level
Warning Number
Target Sector
3 August, 2022
● Critical
2022-5086
All
vmware has released a security update to address several vulnerabilities in the following products:
- VMware Workspace ONE Access (Access)
- VMware Workspace ONE Access Connector (Access Connector)
- VMware Identity Manager (vIDM)
- VMware Identity Manager Connector (vIDM Connector)
- VMware vRealize Automation (vRA)
- VMware Cloud Foundation
- vRealize Suite Lifecycle Manager
Attacker could exploit these vulnerabilities by doing the following:
- Execute arbitrary code remotely
- Authentication bypass
- Escalation of privilege
- Cross-site scripting (XSS)
- Path traversal attack
The CERT team encourages users to review vmware security advisory and apply the necessary updates: