10 August 2022

Exploit code published online for a critical VMware vulnerability


Exploit code published online for a critical VMware vulnerability

Just a week after VMware released security updates for a critical vulnerability affecting multiple VMware products the software provider has issued a warning that a malicious exploit code for the flaw has been made publicly available.

The said vulnerability (CVE-2022-31656) is an authentication bypass issue, which allows a remote non-authenticated attacker with access to the UI bypass authentication process and gain administrative access to the system. The issue impacts the VMware Workspace ONE Access, Identity Manager, and vRealize Automation software products.

“VMware has confirmed malicious code that can exploit CVE-2022-31656 in impacted products is publicly available,” the company wrote in an updated security advisory.

A proof-of-concept code for the vulnerability along with technical analysis has been published by Petrus Viet, a security researcher who discovered the issue.

The US Cybersecurity and Infrastructure Security Agency (CISA) published its own warning last week urging users and administrators to apply the necessary updates.


Back to the list

Latest Posts

Iranian hackers exploit RMM tools to deliver malware

Iranian hackers exploit RMM tools to deliver malware

One of the aspects of MuddyWater's strategy involves exploiting Atera's free trial offers.
24 April 2024
Ongoing malware campaign targets multiple industries, distributes infostealers

Ongoing malware campaign targets multiple industries, distributes infostealers

The campaign leverages a CDN cache domain as a download server, hosting malicious HTA files and payloads.
24 April 2024
US charges four Iranian hackers for cyber intrusions

US charges four Iranian hackers for cyber intrusions

The group targeted both both government and private entities.
24 April 2024