First published: Tue Dec 12 2023(Updated: )
Workspace ONE Launcher contains a Privilege Escalation Vulnerability. A malicious actor with physical access to Workspace ONE Launcher could utilize the Edge Panel feature to bypass setup to gain access to sensitive information.
Credit: security@vmware.com
Affected Software | Affected Version | How to fix |
---|---|---|
VMware Workspace ONE Launcher | >=22.01<23.11 | |
WebKit | ||
Microsoft Power Platform | ||
Azure Logic Apps | ||
Microsoft Windows | ||
Adobe Prelude | ||
Adobe Illustrator 2024 | ||
Adobe InDesign 2025 | ||
Adobe Dimension | ||
Adobe Experience Manager | ||
Adobe Substance 3D Stager | ||
Adobe Substance 3D Sampler | ||
Adobe After Effects 2025 | ||
Trimble ProDesign 3D | ||
Android | ||
SAP Business Technology Platform | ||
Bamboo | ||
Atlassian Bitbucket | ||
Atlassian Jira | ||
Atlassian Confluence Server/Data Center | ||
Atlassian Confluence Server and Data Server | ||
Apache Struts | ||
VMware Workspace ONE Launcher | ||
FortiGuard FortiOS | ||
FortiGuard FortiPAM |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
(Found alongside the following vulnerabilities)
CVE-2023-34064 has been classified as a high severity privilege escalation vulnerability.
To mitigate CVE-2023-34064, it is recommended to update VMware Workspace ONE Launcher to the latest version.
CVE-2023-34064 affects users of VMware Workspace ONE Launcher, particularly those using versions between 22.01 and 23.11.
CVE-2023-34064 is a privilege escalation vulnerability that can be exploited by a malicious actor with physical access.
Exploiting CVE-2023-34064 allows an attacker to bypass setup and gain access to sensitive information.