VMware Workspace ONE Access Privilege Escalation
Posted by deepcore on August 5, 2022 – 8:26 pm
VMware Workspace ONE Access contains a vulnerability whereby the horizon user can escalate their privileges to those of the root user by modifying a file and then restarting the vmware-certproxy service which invokes it. The service control is permitted via the sudo configuration without a password.
Post a reply
You must be logged in to post a comment.