Total vulnerabilities in the database
VMware Workspace ONE Access, Identity Manager and vRealize Automation contain a reflected cross-site scripting (XSS) vulnerability. Due to improper user input sanitization, a malicious actor with some user interaction may be able to inject javascript code in the target user's window.
Software | From | Fixed in |
---|---|---|
vmware / identity_manager | 3.3.4 | 3.3.4.x |
vmware / identity_manager | 3.3.5 | 3.3.5.x |
vmware / identity_manager | 3.3.6 | 3.3.6.x |
vmware / one_access | 21.08.0.0 | 21.08.0.0.x |
vmware / one_access | 21.08.0.1 | 21.08.0.1.x |
vmware / access_connector | 21.08.0.0 | 21.08.0.0.x |
vmware / access_connector | 21.08.0.1 | 21.08.0.1.x |
vmware / access_connector | 22.05 | 22.05.x |
vmware / identity_manager_connector | 3.3.4 | 3.3.4.x |
vmware / identity_manager_connector | 3.3.5 | 3.3.5.x |
vmware / identity_manager_connector | 3.3.6 | 3.3.6.x |
vmware / identity_manager_connector | 19.03.0.1 | 19.03.0.1.x |