PT-2022-4226 · Vmware · Vmware Workstation
David Azria
·
Published
2022-08-09
·
Updated
2022-08-15
·
CVE-2022-22983
CVSS v3.1
5.9
Medium
| Vector | AV:L/AC:L/PR:L/UI:R/S:C/C:H/I:N/A:N |
Name of the Vulnerable Software and Affected Versions
VMware Workstation versions 16.x prior to 16.2.4
Description
The issue is related to insufficient protection of registration data, which can be exploited by a malicious actor with local user privileges to disclose user passwords of a remote server connected through VMware Workstation.
Recommendations
For versions 16.x prior to 16.2.4, update to version 16.2.4 or later to resolve the issue.
Fix
Insufficiently Protected Credentials
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Vmware Workstation