PT-2018-17848 · Vmware · Vmware Airwatch Agent For Windows Mobile+1
Published
2018-06-11
·
Updated
2019-10-03
·
CVE-2018-6968
CVSS v3.1
10
Critical
| Vector | AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:H |
Name of the Vulnerable Software and Affected Versions
VMware AirWatch Agent for Android versions prior to 8.2
VMware AirWatch Agent for Windows Mobile versions prior to 6.5.2
Description
The issue concerns a remote code execution vulnerability in the real-time File Manager capabilities. This may allow unauthorized creation and execution of files in the Agent sandbox and other publicly accessible directories, such as those on the SD card, by a malicious administrator.
Recommendations
For VMware AirWatch Agent for Android versions prior to 8.2, update to version 8.2 or later to resolve the issue.
For VMware AirWatch Agent for Windows Mobile versions prior to 6.5.2, update to version 6.5.2 or later to resolve the issue.
Fix
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Vmware Airwatch Agent For Android
Vmware Airwatch Agent For Windows Mobile