logo

CVE-2022-22972

ID: 71e37823-3a69-5028-bbda-d43a8dc997b3

STIX ID: report--71e37823-3a69-5028-bbda-d43a8dc997b3

Feed Name: Arctic Wolf Blog

Threat Score
75/100

Date Published: 2022-05-19

Date Updated: 2026-04-26

...
...

VMware published advisory VMSA-2022-0014 for multiple vulnerabilities including CVE-2022-22972, a critical (CVSSv3 9.8) authentication bypass affecting Workspace ONE Access, Identity Manager, and vRealize Automation that could allow an unauthenticated actor with network access to obtain administrative access. While no proof-of-concept or in-the-wild exploitation is reported, CISA warned similar VMware product flaws were rapidly exploited after patch release; the advisory recommends prioritizing patching or workarounds, especially for internet-facing appliances.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.