Skip to main content

Critical Update for VMware Workspace ONE Assist

VMware has released a Critical security update to address five vulnerabilities in VMware Workspace ONE Assist

Report a cyber attack: call 0300 303 5222 or email [email protected]

Summary

VMware has released a Critical security update to address five vulnerabilities in VMware Workspace ONE Assist


Affected platforms

The following platforms are known to be affected:

Threat details

Introduction

VMware has released a security update to address five new vulnerabilities in Workspace ONE Assist, including three Critical and two Medium severity vulnerabilities. The Critical vulnerabilities are known as CVE-2022-31685, CVE-2022-31686 and CVE-2022-31687, related to an authentication bypass, a broken authentication method and a broken access control vulnerability. An attacker with network access could exploit one of these vulnerabilities to take control of an affected system.


Remediation advice

Affected organisations are encouraged to review VMware's security advisory VMSA-2022-0021 and apply the relevant updates.



Last edited: 9 November 2022 12:57 pm