Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
VMware AirWatch Console (9.2.x before 9.2.2 and 9.1.x before 9.1.5) contains a Cross Site Request Forgery vulnerability when accessing the App Catalog. An attacker may exploit this issue by tricking users into installing a malicious application on their devices.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
VMware AirWatch Console 跨站请求伪造漏洞
Vulnerability Description
VMware AirWatch是美国威睿(VMware)公司的一套企业移动化管理解决方案。VMware AirWatch Console(AWC)是其中的一个控制台应用程序。 VMware AWC 9.2.2之前的9.2.x版本和9.1.5之前的9.1.x版本中存在跨站请求伪造漏洞,该漏洞源于程序没有充分的执行安全限制。远程攻击者可通过诱使用户安装恶意的应用程序利用该漏洞执行未授权的操作。
CVSS Information
N/A
Vulnerability Type
N/A