Skip to content

PoC for CVE-2022-22954 - VMware Workspace ONE Access Freemarker Server-Side Template Injection

Notifications You must be signed in to change notification settings

DrorDvash/CVE-2022-22954_VMware_PoC

Folders and files

NameName
Last commit message
Last commit date

Latest commit

 

History

13 Commits
 
 
 
 

Repository files navigation

CVE-2022-22954 PoC - VMware Workspace ONE Access Freemarker Server-Side Template Injection

A vulnerability, which was classified as very critical, was found in Vmware Workspace ONE Access and Identity Manager. Affected component is Template Handler. Reference: https://vuldb.com/?id.196644

Usage:

python3 CVE-2022-22954.py example.com "cat /etc/passwd"

Example:

image

Disclaimer

This python script is for Educational purpose ONLY. Do not use it without permission. The usual disclaimer applies, especially the fact that I'm is not liable for any damages caused by direct or indirect use of the information or functionality provided by these scripts.

About

PoC for CVE-2022-22954 - VMware Workspace ONE Access Freemarker Server-Side Template Injection

Resources

Stars

Watchers

Forks

Releases

No releases published

Packages

No packages published

Languages