CVE-2022-22956

VMware Workspace ONE Access has two authentication bypass vulnerabilities (CVE-2022-22955 & CVE-2022-22956) in the OAuth2 ACS framework. A malicious actor may bypass the authentication mechanism and execute any operation due to exposed endpoints in the authentication framework.
References
Configurations

Configuration 1


Information

Published : 2022-04-13 06:15

Updated : 2022-04-21 02:17


NVD link : CVE-2022-22956

Mitre link : CVE-2022-22956

Products Affected
CWE