First published: Wed Nov 09 2022(Updated: )
VMware Workspace ONE Assist prior to 22.10 contains an Authentication Bypass vulnerability. A malicious actor with network access to Workspace ONE Assist may be able to obtain administrative access without the need to authenticate to the application.
Credit: security@vmware.com
Affected Software | Affected Version | How to fix |
---|---|---|
VMware Workspace ONE Assist | <22.10 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2022-31685 has been rated as a critical severity vulnerability due to its potential for unauthorized access to administrative privileges.
To fix CVE-2022-31685, you should upgrade to VMware Workspace ONE Assist version 22.10 or later.
CVE-2022-31685 is classified as an Authentication Bypass vulnerability.
Any organization using VMware Workspace ONE Assist versions prior to 22.10 is affected by CVE-2022-31685.
A malicious actor can exploit CVE-2022-31685 to gain administrative access without authenticating to the application.