
Proof-of-concept exploit for CVE-2022-22954, a critical server-side template injection in VMware Workspace ONE Access. Enables remote code execution on vulnerable appliances.
VMware Workspace ONE Access (formerly known as VMware Identity Manager) aims to allow your employees to access SaaS, web, and native mobile applications faster through multi-factor authentication, conditional access, and single sign-on. Recently, the VMware official website released multiple vulnerabilities in VMware Workspace ONE Access: Among them, vulnerability number CVE-2022-22954 has a CVSS score of 9.8 and a severity rating of Critical. Affected versions are as follows:
Script usage:
python3 CVE-2022-22954-POC.py -u https://test.com:8443
python3 CVE-2022-22954-POC.py -f 123.txt
