Project Hyphae
Search

CISA Warns of Ongoing VMware VMscare

Share This Post

Back on April 6th, 2022, VMware released software updates and disclosed two vulnerabilities. The updates were intended to address (CVE-2022-22954 and CVE-2022-22960) which afflict VMware Workspace ONE Access, VMware Identity Manager (vIDM), vRealize Lifecycle Manager, vRealize Automation, and VMware Cloud Foundation products. Within 48 hours, those updates had been reverse engineered by sophisticated threat actors and those vulnerabilities were being actively exploited to enable privilege escalation and trigger a server-side template injection that can result in remote code execution.

On May 18th, 2022, VMware released software updates and disclosed two more fresh vulnerabilities for the same list of products. (CVE-2022-22972 and CVE-2022-22973) On the same day, the Cybersecurity and Infrastructure Security Agency (CISA) issued an emergency directive along with an alert that warns of threat actors chaining these four vulnerabilities to gain full system control.

In the week since, these most recent updates have again been reverse engineered, allowing attackers to obtain administrative access without needing to authenticate, and/or escalate privileges all the way to ‘root.’

For all the product versions affected and remediation procedures, visit: https://kb.vmware.com/s/article/88438



Reach out to our incident response team for help

More To Explore

Information Security News 4-22-2024

Cisco Duo Warns Third-Party Data Breach Exposed SMS MFA Logs Article Link: https://www.bleepingcomputer.com/news/security/cisco-duo-warns-third-party-data-breach-exposed-sms-mfa-logs/ Notorious Russian Hacking Unit Linked to Breach of Texas Water Facility Article

Information Security News 4-15-2024

Roku Disclosed a Security Incident Impacting 576,000 Accounts Article Link: https://securityaffairs.com/161765/data-breach/roku-second-data-breach.html FBI Warns of Massive Wave of Road Toll SMS Phishing Attacks Article Link: https://www.bleepingcomputer.com/news/security/fbi-warns-of-massive-wave-of-road-toll-sms-phishing-attacks/

Do You Want to Shore Up Your Defenses?

We're opening our first round of threat hunting engagements to 100 organizations. Sign up or join the wait list here.