First published: Fri Dec 17 2021(Updated: )
VMware Workspace ONE UEM console 20.0.8 prior to 20.0.8.37, 20.11.0 prior to 20.11.0.40, 21.2.0 prior to 21.2.0.27, and 21.5.0 prior to 21.5.0.37 contain an SSRF vulnerability. This issue may allow a malicious actor with network access to UEM to send their requests without authentication and to gain access to sensitive information.
Credit: security@vmware.com
Affected Software | Affected Version | How to fix |
---|---|---|
VMware Workspace ONE UEM console | >=20.0.8.0<20.0.8.36 | |
VMware Workspace ONE UEM console | >=20.11.0.0<20.11.0.40 | |
VMware Workspace ONE UEM console | >=21.2.0.0<21.2.0.27 | |
VMware Workspace ONE UEM console | >=21.5.0.0<21.5.0.37 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.