VMware Workspace ONE UEM console contains an open redirect vulnerability. A malicious actor may be able to redirect a victim to an attacker and retrieve their SAML response to login as the victim user.
2023-10-31T21:15:08.440
2024-11-21T07:41:45.290
Modified
CVSSv3.1: 8.8 (HIGH)
Type | Vendor | Product | Version/Range | Vulnerable? |
---|---|---|---|---|
Application | vmware | workspace_one_uem | < 22.3.0.48 | Yes |
Application | vmware | workspace_one_uem | < 22.6.0.36 | Yes |
Application | vmware | workspace_one_uem | < 22.9.0.29 | Yes |
Application | vmware | workspace_one_uem | < 22.12.0.20 | Yes |
Application | vmware | workspace_one_uem | < 23.2.0.10 | Yes |