VMware Workspace ONE Access and Identity Manager contain a URL injection vulnerability. A malicious actor with network access may be able to redirect an authenticated user to an arbitrary domain.
                
            References
                    | Link | Resource | 
|---|---|
| https://www.vmware.com/security/advisories/VMSA-2022-0021.html | Patch Vendor Advisory | 
| https://www.vmware.com/security/advisories/VMSA-2022-0021.html | Patch Vendor Advisory | 
Configurations
                    Configuration 1 (hide)
| AND | 
 
 | 
Configuration 2 (hide)
| AND | 
 
 | 
History
                    No history.
Information
                Published : 2022-08-05 16:15
Updated : 2024-11-21 07:05
NVD link : CVE-2022-31657
Mitre link : CVE-2022-31657
CVE.ORG link : CVE-2022-31657
JSON object : View
Products Affected
                vmware
- identity_manager
- identity_manager_connector
- one_access
- access_connector
microsoft
- windows
linux
- linux_kernel
CWE
                
                    
                        
                        CWE-601
                        
            URL Redirection to Untrusted Site ('Open Redirect')
