Description
VMware Workspace ONE Access and VMware Identity Manager contain an insecure redirect vulnerability. An unauthenticated malicious actor may be able to redirect a victim to an attacker controlled domain due to improper path handling leading to sensitive information disclosure.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2023-25055 | VMware Workspace ONE Access and VMware Identity Manager contain an insecure redirect vulnerability. An unauthenticated malicious actor may be able to redirect a victim to an attacker controlled domain due to improper path handling leading to sensitive information disclosure. |
References
History
Fri, 10 Jan 2025 19:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Status: PUBLISHED
Assigner: vmware
Published:
Updated: 2025-01-10T18:58:11.000Z
Reserved: 2022-11-01T15:41:50.393Z
Link: CVE-2023-20884
Updated: 2024-08-02T09:21:32.910Z
Status : Modified
Published: 2023-05-30T16:15:09.390
Modified: 2025-01-10T19:15:31.997
Link: CVE-2023-20884
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD