First published: Mon Jan 29 2018(Updated: )
VMware AirWatch Console (9.2.x before 9.2.2 and 9.1.x before 9.1.5) contains a Cross Site Request Forgery vulnerability when accessing the App Catalog. An attacker may exploit this issue by tricking users into installing a malicious application on their devices.
Credit: security@vmware.com
Affected Software | Affected Version | How to fix |
---|---|---|
VMware AirWatch | >=9.1<9.1.5 | |
VMware AirWatch | >=9.2<9.2.2 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.