CISA Known Exploited Vulnerability

CVE-2022-22954 Ransomware

VMware · Workspace ONE Access and Identity Manager

VMware Workspace ONE Access and Identity Manager Server-Side Template Injection Vulnerability

Date added
BOD 22-01 due date
CWE CWE-94
Ransomware Known

CISA description

VMware Workspace ONE Access and Identity Manager allow for remote code execution due to server-side template injection.

Required action

Apply updates per vendor instructions.