6.8
CVE-2024-22260
- EPSS 0.27%
- Veröffentlicht 27.06.2024 21:15:13
- Zuletzt bearbeitet 19.03.2025 18:15:20
- Quelle security@vmware.com
- CVE-Watchlists
- Unerledigt
VMware Workspace One UEM update addresses an information exposure vulnerability. A malicious actor with network access to the Workspace One UEM may be able to perform an attack resulting in an information exposure.
Verknüpft mit AI von unstrukturierten Daten zu bestehenden CPE der NVD
Daten sind bereitgestellt durch das CVE Programm von Authorized Data Publishers (ADP) (Unstrukturiert)
Herstellervmware
≫
Produkt
workspace_one_uem
Default Statusunknown
Version
23.10x
Status
affected
Herstellervmware
≫
Produkt
workspace_one_uem
Default Statusunknown
Version
23.6x
Status
affected
Herstellervmware
≫
Produkt
workspace_one_uem
Default Statusunknown
Version
23.4x
Status
affected
Herstellervmware
≫
Produkt
workspace_one_uem
Default Statusunknown
Version
22.12x
Status
affected
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 0.27% | 0.5 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| security@vmware.com | 6.8 | 1.6 | 5.2 |
CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:N
|
CWE-200 Exposure of Sensitive Information to an Unauthorized Actor
The product exposes sensitive information to an actor that is not explicitly authorized to have access to that information.