Unrated severityCISA KEVNVD Advisory· Published Apr 13, 2022· Updated Oct 21, 2025
CVE-2022-22960
CVE-2022-22960
Description
VMware Workspace ONE Access, Identity Manager and vRealize Automation contain a privilege escalation vulnerability due to improper permissions in support scripts. A malicious actor with local access can escalate privileges to 'root'.
Affected products
1- VMware/Workspace ONE Accessdescription
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
4- packetstormsecurity.com/files/171918/Mware-Workspace-ONE-Remote-Code-Execution.htmlmitre
- packetstormsecurity.com/files/171918/VMware-Workspace-ONE-Remote-Code-Execution.htmlmitre
- packetstormsecurity.com/files/171935/VMware-Workspace-ONE-Access-Privilege-Escalation.htmlmitre
- www.vmware.com/security/advisories/VMSA-2022-0011.htmlmitre
News mentions
0No linked articles in our index yet.