CVE-2022-31701
Severity CVSS v4.0:
Pending analysis
Type:
CWE-306
Missing Authentication for Critical Function
Publication date:
14/12/2022
Last modified:
22/04/2025
Description
VMware Workspace ONE Access and Identity Manager contain a broken authentication vulnerability. VMware has evaluated the severity of this issue to be in the Moderate severity range with a maximum CVSSv3 base score of 5.3.
Impact
Base Score 3.x
5.30
Severity 3.x
MEDIUM
Vulnerable products and versions
CPE | From | Up to |
---|---|---|
cpe:2.3:a:vmware:access:21.08.0.0:*:*:*:*:linux:*:* | ||
cpe:2.3:a:vmware:access:21.08.0.1:*:*:*:*:linux:*:* | ||
cpe:2.3:a:vmware:access:22.09.0.0:*:*:*:*:linux:*:* | ||
cpe:2.3:a:vmware:cloud_foundation:*:*:*:*:*:*:*:* | ||
cpe:2.3:a:vmware:identity_manager_connector:3.3.6:*:*:*:*:*:*:* | ||
cpe:2.3:o:linux:linux_kernel:-:*:*:*:*:*:*:* |
To consult the complete list of CPE names with products and versions, see this page