CVE-2022-22972
ID: 71e37823-3a69-5028-bbda-d43a8dc997b3
STIX ID: report--71e37823-3a69-5028-bbda-d43a8dc997b3
Feed Name: Arctic Wolf Blog
VMware published advisory VMSA-2022-0014 for multiple vulnerabilities including CVE-2022-22972, a critical (CVSSv3 9.8) authentication bypass affecting Workspace ONE Access, Identity Manager, and vRealize Automation that could allow an unauthenticated actor with network access to obtain administrative access. While no proof-of-concept or in-the-wild exploitation is reported, CISA warned similar VMware product flaws were rapidly exploited after patch release; the advisory recommends prioritizing patching or workarounds, especially for internet-facing appliances.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
