CVE-2017-4931: Input Validation
VMware AirWatch Console 9.x prior to 9.2.0 contains a vulnerability that could allow an authenticated AWC user to add malicious data to an enrolled device's log files. Successful exploitation of this issue could result in an unsuspecting AWC user opening a CSV file which contains malicious content.
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of CVE-2017-4931?
CVE-2017-4931 has been rated as a moderate severity vulnerability.
How do I fix CVE-2017-4931?
To mitigate CVE-2017-4931, upgrade VMware AirWatch Console to version 9.2.0 or later.
What impact does CVE-2017-4931 have on users?
CVE-2017-4931 allows attackers to potentially insert malicious content into CSV files opened by unsuspecting users.
Who is affected by CVE-2017-4931?
Authenticated users of VMware AirWatch Console versions 9.x prior to 9.2.0 are affected by CVE-2017-4931.
Is CVE-2017-4931 a remote or local vulnerability?
CVE-2017-4931 is considered a local vulnerability as it requires an authenticated user to exploit it.