← Back

CVE-2021-22029

nvd nist
Published: Aug 31, 2021Modified: Nov 21, 2024

JSON object

Loading...
7.5
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
Exploitability: 3.9 / Impact: 3.6
Source: NVD

Description

VMware Workspace ONE UEM REST API contains a denial of service vulnerability. A malicious actor with access to /API/system/admins/session could cause an API denial of service due to improper rate limiting.

Affected (6)

1 product
Workspace One Uem Console
Configuration A
6 vulnerable
Vulnerable SoftwareAffected Versions
Vmware
From 20.1.0.0 to 20.1.0.33
From 20.11.0.0 to 20.11.0.30
From 20.5.0.0 to 20.5.0.51
From 20.8.0.0 to 20.8.0.32
From 21.2.0.0 to 21.2.0.14
From 21.5.0.0 to 21.5.0.2

References (2)

Source: security@vmware.com
Vendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Vendor Advisory

Timeline

No history available yet.