VMware Products Privilege Escalation

Strike ID:
E23-ec8g1
CVSS:
7.8 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
False Positive:
f
Variants:
1
Year:
2022

Description

This strike exploits a privilege escalation vulnerability in VMware Workspace ONE Access, Identity Manager and vRealize Automation. The vulnerability exists due to improper permissions in support scripts. The flaw exists since the default user for the VMware products, named "horizon", has access to several sudo commands, some of which involve paths that can be overwritten as well. Consequently, a malicious actor with local access can exploit this vulnerability to escalate their privileges to root.

CVE

References