VMware releases security updates
VMware has released security updates and workarounds to address security vulnerabilities (CVE-2022-22972, CVE-2022-22973) in VMware Workspace ONE Access (Access), VMware Identity Manager (vIDM), VMware vRealize Automation (vRA), VMware Cloud Foundation, vRealize Suite Lifecycle Manager products. A malicious actor could exploit these vulnerabilities to bypass authentication and, escalate privileges to 'root'. VMware has evaluated the severity of these issues with a CVSSv3 base score of 9.8 and 7.8.
More information on vulnerabilities and updates is available in VMware security advisory – VMSA-2022-0014.
23 May 2022