CVE-2021-22098

Publication date

2021-08-11 20:49:28

Family

vmware

State

PUBLISHED

Description

UAA server versions prior to 75.4.0 are vulnerable to an open redirect vulnerability. A malicious user can exploit the open redirect vulnerability by social engineering leading to take over of victims’ accounts in certain cases along with redirection of UAA users to a malicious sites.