CVE-2022-31656 VMware Workspace ONE Access Auth Bypass
Description
Detects the exploitation of VMware Workspace ONE Access Authentication Bypass vulnerability as described in CVE-2022-31656 VMware Workspace ONE Access, Identity Manager and vRealize Automation contain an authentication bypass vulnerability affecting local domain users. A malicious actor with network access to the UI may be able to obtain administrative access without the need to authenticate.
Query · sigma
selection: cs-uri-query|contains: /SAAS/t/_/;/ condition: selection
Known false positives
- Vulnerability scanners