445
VMScore

CVE-2021-22056

Published: 20/12/2021 Updated: 03/01/2022
CVSS v2 Base Score: 5 | Impact Score: 2.9 | Exploitability Score: 10
CVSS v3 Base Score: 7.5 | Impact Score: 3.6 | Exploitability Score: 3.9
VMScore: 445
Vector: AV:N/AC:L/Au:N/C:P/I:N/A:N

Vulnerability Summary

VMware Workspace ONE Access 21.08, 20.10.0.1, and 20.10 and Identity Manager 3.3.5, 3.3.4, and 3.3.3 contain an SSRF vulnerability. A malicious actor with network access may be able to make HTTP requests to arbitrary origins and read the full response.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

vmware identity_manager 3.3.3

vmware identity_manager 3.3.4

vmware identity_manager 3.3.5

vmware vrealize_automation 7.6

vmware vrealize_automation

vmware workspace_one_access 20.10

vmware workspace_one_access 20.10.01

vmware workspace_one_access 21.08

vmware workspace_one_access 21.08.01

Vendor Advisories

Sign up for Security Advisories Stay up to date on the latest VMware Security advisories and updates ...