📦 Vrealize Automation

by Vmware

🔍 What is Vrealize Automation?

Description coming soon...

🛡️ Security Overview

Click on a severity to filter vulnerabilities

⚠️ Known Vulnerabilities

CVE-2022-22972

CRITICAL CVSS 9.8 May 20, 2022

This authentication bypass vulnerability allows attackers with network access to the UI to gain administrative privileges without credentials. It affects VMware Workspace ONE Access, Identity Manager,...

CVE-2022-22955

CRITICAL CVSS 9.8 Apr 13, 2022

CVE-2022-22955 is an authentication bypass vulnerability in VMware Workspace ONE Access's OAuth2 ACS framework that allows attackers to execute operations without proper authentication. This affects o...

CVE-2022-22954

CRITICAL CVSS 9.8 Apr 11, 2022

This vulnerability allows remote attackers to execute arbitrary code on VMware Workspace ONE Access and Identity Manager systems through server-side template injection. Attackers with network access c...

CVE-2022-22957

HIGH CVSS 7.2 Apr 13, 2022

This vulnerability allows remote code execution in VMware Workspace ONE Access, Identity Manager, and vRealize Automation. An attacker with administrative access can exploit insecure deserialization v...

CVE-2022-22960

HIGH CVSS 7.8 Apr 13, 2022

This vulnerability allows a malicious actor with local access to VMware Workspace ONE Access, Identity Manager, or vRealize Automation systems to escalate privileges to root due to improper permission...

CVE-2021-22056

HIGH CVSS 7.5 Dec 20, 2021

This CVE describes a Server-Side Request Forgery (SSRF) vulnerability in VMware Workspace ONE Access and Identity Manager products. It allows attackers with network access to make HTTP requests to arb...