CVE-2022-31686: Critical severity vmware workspace one assist vulnerability
Published Nov 9, 2022
·Updated
VMware Workspace ONE Assist prior to 22.10 contains a Broken Authentication Method vulnerability. A malicious actor with network access to Workspace ONE Assist may be able to obtain administrative access without the need to authenticate to the application.
Affected Software
1 affected component
VMware Workspace ONE Assist<22.10
Remediation
Event History
Nov 9, 2022
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
DescriptionWeakness
Frequently Asked Questions
1
What is the severity of CVE-2022-31686?
CVE-2022-31686 is considered a critical severity vulnerability due to its impact on authentication mechanisms.
2
How do I fix CVE-2022-31686?
To fix CVE-2022-31686, upgrade VMware Workspace ONE Assist to version 22.10 or later.
3
What type of vulnerability is CVE-2022-31686?
CVE-2022-31686 is categorized as a Broken Authentication Method vulnerability.
4
Who is affected by CVE-2022-31686?
CVE-2022-31686 affects users of VMware Workspace ONE Assist versions prior to 22.10.
5
What can an attacker do with CVE-2022-31686?
An attacker with network access to Workspace ONE Assist could potentially gain administrative access without authentication.