Security Advisory

CVE-2022-22944

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2022-03-02 20:50:17
Last updated 2024-08-03 03:28:42
Assigner vmware
State PUBLISHED

Description

VMware Workspace ONE Boxer contains a stored cross-site scripting (XSS) vulnerability. Due to insufficient sanitization and validation, in VMware Workspace ONE Boxer calendar event descriptions, a malicious actor can inject script tags to execute arbitrary script within a users window.