VMware Workspace ONE Access Privilege Escalation
Posted by deepcore on April 20, 2023 – 4:06 pm
This Metasploit module exploits CVE-2022-22960 which allows the user to overwrite the permissions of the certproxyService.sh script so that it can be modified by the horizon user. This allows a local attacker with the uid 1001 to escalate their privileges to root access.
Post a reply
You must be logged in to post a comment.