CVE-2022-22954

VMware Workspace ONE Access and Identity Manager contain a remote code execution vulnerability due to server-side template injection. A malicious actor with network access can trigger a server-side template injection that may result in remote code execution.
Configurations

Configuration 1

cpe:2.3:a:vmware:vrealize_suite_lifecycle_manager:*:*:*:*:*:*:*:*
cpe:2.3:a:vmware:cloud_foundation:*:*:*:*:*:*:*:*

Information

Published : 2022-04-11 08:15

Updated : 2022-09-09 04:47


NVD link : CVE-2022-22954

Mitre link : CVE-2022-22954

Products Affected
No products.
CWE