First published: Wed Nov 09 2022(Updated: )
VMware Workspace ONE Assist prior to 22.10 contains a Broken Authentication Method vulnerability. A malicious actor with network access to Workspace ONE Assist may be able to obtain administrative access without the need to authenticate to the application.
Credit: security@vmware.com
Affected Software | Affected Version | How to fix |
---|---|---|
VMware Workspace ONE Assist | <22.10 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2022-31686 is considered a critical severity vulnerability due to its impact on authentication mechanisms.
To fix CVE-2022-31686, upgrade VMware Workspace ONE Assist to version 22.10 or later.
CVE-2022-31686 is categorized as a Broken Authentication Method vulnerability.
CVE-2022-31686 affects users of VMware Workspace ONE Assist versions prior to 22.10.
An attacker with network access to Workspace ONE Assist could potentially gain administrative access without authentication.