VMware patches critical admin authentication bypass bug

Danmark Nyheder Nyheder

VMware patches critical admin authentication bypass bug
Danmark Seneste Nyt,Danmark Overskrifter
  • 📰 TheRegister
  • ⏱ Reading Time:
  • 44 sec. here
  • 2 min. at publisher
  • 📊 Quality Score:
  • News: 21%
  • Publisher: 61%

VMware patches critical 'make me admin' auth bypass bug, plus nine other flaws

VMware has fixed a critical authentication bypass vulnerability that hits 9.8 out of 10 on the CVSS severity scale and is present in multiple products.

That flaw is tracked as CVE-2022-31656, and affects VMware's Workspace ONE Access, Identity Manager, and vRealize Automation. It was addressed along with nine other security holesHere's the bottom line of the '31656 bug, according to VMware:"A malicious actor with network access to the UI may be able to obtain administrative access without the need to authenticate." Quite a nice way to get admin-level control over a remote system.

The critical vulnerability is similar to, or perhaps even a variant or patch bypass of, an earlier critical authentication bypass vulnerability that also rated 9.8 in severity and VMware fixed back in May.

In addition to the software titan and third-party security researchers urging organizations to patch immediately, Petrus Viet, the bug hunter who found and reported the flaw, said he'll soon

Vi har opsummeret denne nyhed, så du kan læse den hurtigt. Hvis du er interesseret i nyheden, kan du læse hele teksten her. Læs mere:

TheRegister /  🏆 67. in UK

Danmark Seneste Nyt, Danmark Overskrifter

Similar News:Du kan også læse nyheder, der ligner denne, som vi har indsamlet fra andre nyhedskilder.

Windows 10 22H2 edges closer as OS hits Release PreviewWindows 10 22H2 edges closer as OS hits Release PreviewNot to worry, admins: Hardware Compatibility Program still the same as Windows 10 2004
Læs mere »

Here’s What The Vogue Editors Bought In JulyHere’s What The Vogue Editors Bought In JulyFrom preloved platforms to some life-changing sleep patches.
Læs mere »

The funniest patch notes in PC gamingThe funniest patch notes in PC gamingPhil has been writing for PC Gamer for nearly a decade, starting out as a freelance writer covering everything from free games to MMOs. He eventually joined full-time as a news writer, before moving to the magazine to review immersive sims, RPGs and Hitman games. Now he leads PC Gamer's UK team, but still sometimes finds the time to write about his ongoing obsessions with Destiny 2, GTA Online and Apex Legends. When he's not levelling up battle passes, he's checking out the latest tactics game or dipping back into Guild Wars 2. He's largely responsible for the whole Tub Geralt thing, but still isn't sorry.
Læs mere »

Shale patch pioneer Chesapeake to ditch oil in favour of natural gas\n\t\t\tExpert insights, analysis and smart data help you cut through the noise to spot trends,\n\t\t\trisks and opportunities.\n\t\t\n\t\tJoin over 300,000 Finance professionals who already subscribe to the FT.
Læs mere »

Shale patch pioneer Chesapeake to ditch oil in favour of natural gas\n\t\t\tExpert insights, analysis and smart data help you cut through the noise to spot trends,\n\t\t\trisks and opportunities.\n\t\t\n\t\tJoin over 300,000 Finance professionals who already subscribe to the FT.
Læs mere »

How a crypto bridge bug led to a $200m 'crowd looting'How a crypto bridge bug led to a $200m 'crowd looting'How a crypto bridge bug led to a $200m 'decentralized crowd looting'
Læs mere »



Render Time: 2025-04-21 00:55:10