Security Advisory

CVE-2022-22954

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2022-04-11 19:37:39
Last updated 2025-10-21 23:15:42
Assigner vmware
State PUBLISHED

Description

VMware Workspace ONE Access and Identity Manager contain a remote code execution vulnerability due to server-side template injection. A malicious actor with network access can trigger a server-side template injection that may result in remote code execution.