Vmware Airwatch vulnerabilities
4 known vulnerabilities affecting vmware/airwatch.
Total CVEs
4
CISA KEV
0
Public exploits
0
Exploited in wild
0
Severity breakdown
HIGH2MEDIUM2
Vulnerabilities
Page 1 of 1
CVE-2017-4951HIGHCVSS 8.8≥ 9.1, < 9.1.5≥ 9.2, < 9.2.22018-01-29
CVE-2017-4951 [HIGH] CWE-352 CVE-2017-4951: VMware AirWatch Console (9.2.x before 9.2.2 and 9.1.x before 9.1.5) contains a Cross Site Request Fo
VMware AirWatch Console (9.2.x before 9.2.2 and 9.1.x before 9.1.5) contains a Cross Site Request Forgery vulnerability when accessing the App Catalog. An attacker may exploit this issue by tricking users into installing a malicious application on their devices.
nvd
CVE-2017-4931HIGHCVSS 7.8≥ 9.0.0, < 9.2.02017-11-16
CVE-2017-4931 [HIGH] CWE-20 CVE-2017-4931: VMware AirWatch Console 9.x prior to 9.2.0 contains a vulnerability that could allow an authenticate
VMware AirWatch Console 9.x prior to 9.2.0 contains a vulnerability that could allow an authenticated AWC user to add malicious data to an enrolled device's log files. Successful exploitation of this issue could result in an unsuspecting AWC user opening a CSV file which contains malicious content.
nvd
CVE-2017-4930MEDIUMCVSS 5.4≥ 9.0.0, < 9.2.02017-11-16
CVE-2017-4930 [MEDIUM] CWE-79 CVE-2017-4930: VMware AirWatch Console 9.x prior to 9.2.0 contains a vulnerability that could allow an authenticate
VMware AirWatch Console 9.x prior to 9.2.0 contains a vulnerability that could allow an authenticated AWC user to add a malicious URL to an enrolled device's 'Links' page. Successful exploitation of this issue could result in an unsuspecting AWC user being redirected to a malicious URL.
nvd
CVE-2014-8372MEDIUMCVSS 4.0≤ 7.3.3.0v7.3.0.02014-12-11
CVE-2014-8372 [MEDIUM] CWE-200 CVE-2014-8372: AirWatch by VMware On-Premise 7.3.x before 7.3.3.0 (FP3) allows remote authenticated users to obtain
AirWatch by VMware On-Premise 7.3.x before 7.3.3.0 (FP3) allows remote authenticated users to obtain the organizational information and statistics from arbitrary tenants via vectors involving a direct object reference.
nvd