Critical Update for VMware Workspace ONE Assist
VMware has released a Critical security update to address five vulnerabilities in VMware Workspace ONE Assist
Summary
VMware has released a Critical security update to address five vulnerabilities in VMware Workspace ONE Assist
Affected platforms
The following platforms are known to be affected:
Threat details
Introduction
VMware has released a security update to address five new vulnerabilities in Workspace ONE Assist, including three Critical and two Medium severity vulnerabilities. The Critical vulnerabilities are known as CVE-2022-31685, CVE-2022-31686 and CVE-2022-31687, related to an authentication bypass, a broken authentication method and a broken access control vulnerability. An attacker with network access could exploit one of these vulnerabilities to take control of an affected system.
Remediation advice
Affected organisations are encouraged to review VMware's security advisory VMSA-2022-0021 and apply the relevant updates.
Definitive source of threat updates
CVE Vulnerabilities
Last edited: 9 November 2022 12:57 pm