CVE-2022-31701
MEDIUM
5,3
Source: [email protected]
Attack Vector: network
Attack Complexity: low
Privileges Required: none
User Interaction: none
Scope: unchanged
Confidentiality: low
Integrity: none
Availability: none
Description
AI Translation Available
VMware Workspace ONE Access and Identity Manager contain a broken authentication vulnerability. VMware has evaluated the severity of this issue to be in the Moderate severity range with a maximum CVSSv3 base score of 5.3.
EPSS (Exploit Prediction Scoring System)
Trend Analysis
EPSS (Exploit Prediction Scoring System)
Prevede la probabilità di sfruttamento basata su intelligence sulle minacce e sulle caratteristiche della vulnerabilità.
EPSS Score
0,0017
Percentile
0,4th
Updated
EPSS Score Trend (Last 90 Days)
306
Missing Authentication for Critical Function
DraftCommon Consequences
Security Scopes Affected:
Access Control
Other
Potential Impacts:
Gain Privileges Or Assume Identity
Varies By Context
Applicable Platforms
Technologies:
Cloud Computing, ICS/OT
Application
Identity Manager Connector by Vmware
CPE Identifier
View Detailed Analysis
cpe:2.3:a:vmware:identity_manager_connector:3.3.6:*:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Application
Cloud Foundation by Vmware
CPE Identifier
View Detailed Analysis
cpe:2.3:a:vmware:cloud_foundation:*:*:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Application
Access by Vmware
CPE Identifier
View Detailed Analysis
cpe:2.3:a:vmware:access:21.08.0.0:*:*:*:*:linux:*:*
Common Platform Enumeration - Standardized vulnerability identification
Application
Access by Vmware
CPE Identifier
View Detailed Analysis
cpe:2.3:a:vmware:access:22.09.0.0:*:*:*:*:linux:*:*
Common Platform Enumeration - Standardized vulnerability identification
Application
Access by Vmware
CPE Identifier
View Detailed Analysis
cpe:2.3:a:vmware:access:21.08.0.1:*:*:*:*:linux:*:*
Common Platform Enumeration - Standardized vulnerability identification
https://www.vmware.com/security/advisories/VMSA-2022-0032.html
https://www.vmware.com/security/advisories/VMSA-2022-0032.html