VMware Releases Security Updates for Workspace ONE
Affected platforms
The following platforms are known to be affected:
Threat details
Introduction
VMware has released out-of-band updates to address the Log4Shell vulnerabilities in their Workspace ONE digital workspace platform. They claim that an unauthenticated remote attacker could exploit these vulnerabilities to take control of affected systems.
VMware Workspace ONE Under Active Exploitation
The Log4Shell vulnerability within VMware products is being actively targeted and exploited.
Application of the mitigation measures listed in the VMware knowledge base article below should be applied immediately.
Remediation advice
Affected organisations are encouraged to review VMware knowledge base article HW-150533 and apply any relevant updates.
CVE Vulnerabilities
Last edited: 24 December 2021 11:32 am