VMware Workspace ONE Access Privilege Escalation
Posted by deepcore on August 4, 2022 – 10:01 pm
VMware Workspace ONE Access contains a vulnerability whereby the horizon user can escalate their privileges to those of the root user by modifying a file and then restarting the vmware-certproxy service which invokes it. The service control is permitted via the sudo configuration without a password.
Post a reply
You must be logged in to post a comment.