cve/2021/CVE-2021-22057.md
2025-09-29 21:09:30 +02:00

18 lines
921 B
Markdown

### [CVE-2021-22057](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2021-22057)
![](https://img.shields.io/static/v1?label=Product&message=VMware%20Workspace%20ONE%20Access&color=blue)
![](https://img.shields.io/static/v1?label=Version&message=VMware%20Workspace%20ONE%20Access%2021.08%2C%2020.10.0.1%2C%20and%2020.10%20&color=brightgreen)
![](https://img.shields.io/static/v1?label=Vulnerability&message=VMware%20Workspace%20Access%20Authentication%20bypass%20vulnerability&color=brightgreen)
### Description
VMware Workspace ONE Access 21.08, 20.10.0.1, and 20.10 contain an authentication bypass vulnerability. A malicious actor, who has successfully provided first-factor authentication, may be able to obtain second-factor authentication provided by VMware Verify.
### POC
#### Reference
- https://www.vmware.com/security/advisories/VMSA-2021-0030.html
#### Github
- https://github.com/ARPSyndicate/cvemon