Server-Side Request Forgery (SSRF) in VMware Workspace One Access - CVE-2021-22002
Published: August 5, 2021
Vulnerability details
The disclosed vulnerability allows a remote attacker to perform SSRF attacks.
The vulnerability exists due to insufficient validation of user-supplied input in the /cfg web app and diagnostic endpoints. A remote attacker can send a specially crafted HTTP request with a modified HTTP Host header to port 443/TCP and access the /cfg web application, available at port 8443. As a result, a remote non-authenticated attacker can perform SSRF attack and gain access to services in the internal network.
Affected software
VMware Identity Manager
Aria Automation (formerly vRealize Automation)
Cloud Foundation
Dell Enterprise Hybrid Cloud
vRealize Suite Lifecycle Manager
How to mitigate CVE-2021-22002
External References
Related Security Bulletins
- Multiple vulnerabilities in VMware Workspace One Access
- Multiple vulnerabilities in VMware Identity Manager (vIDM)
- Multiple vulnerabilities in VMware Cloud Foundation (vIDM)
- Multiple vulnerabilities in vRealize Suite Lifecycle Manager
- SSRF in VMware vRealize Automation
- Dell EMC Enterprise Hybrid Cloud update for VMware products