Rewterz
Rewterz Threat Alert – Trickbot IOCs
November 23, 2020
Rewterz
Rewterz Threat Alert – Latest Ursnif IOCs
November 24, 2020

Rewterz Threat Advisory – CVE-2020-4006 – Zero-day in multiple VMware Workspace One components

Severity

High

Analysis Summary

CVE-2020-4006 

A malicious actor with network access to the administrative configurator on port 8443 and a valid password for the configurator admin account can execute commands with unrestricted privileges on the underlying operating system.

Impact

  • Gain access
  • Command execution

Affected Vendors

VMware

Affected Products

VMware Workspace One

Remediation

Refer to VMware Security Advisory VMSA-2020-0027 for the complete list of affected products and their respective patches.

https://www.vmware.com/security/advisories/VMSA-2020-0027.html