Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories
CVE-2022-22954-POC — Proof-of-concept exploit for CVE-2022-22954, a critical server-side template injection in VMware Workspace ONE Access. Enables remote code execution on vulnerable appliances. | Kitploit
Tools/GitHubGitHub/mhurts/cve-2022-22954-poc
ReconnaissanceVulnerability AnalysisExploitationWeb Application ExploitationPenetration Testing
GitHubmhurts/cve-2022-22954-poc

CVE-2022-22954-POC

Proof-of-concept exploit for CVE-2022-22954, a critical server-side template injection in VMware Workspace ONE Access. Enables remote code execution on vulnerable appliances.

View Repository
114 years agoNot yet reviewed

Most Popular

View all →

Discover the most used tools by our community.

Explore all tools

Browse our collection of tools

View all tools →
Share

CVE-2022-22954-POC

VMware Workspace ONE Access (formerly known as VMware Identity Manager) aims to allow your employees to access SaaS, web, and native mobile applications faster through multi-factor authentication, conditional access, and single sign-on. Recently, the VMware official website released multiple vulnerabilities in VMware Workspace ONE Access: Among them, vulnerability number CVE-2022-22954 has a CVSS score of 9.8 and a severity rating of Critical. Affected versions are as follows:

  • VMware Workspace ONE Access Appliance (version numbers: 20.10.0.0, 20.10.0.1, 21.08.0.0, 21.08.0.1)
  • VMware Identity Manager Appliance (version numbers: 3.3.3, 3.3.4, 3.3.5, 3.3.6)
  • VMware Realize Automation (version number: 7.6)

Script usage: python3 CVE-2022-22954-POC.py -u https://test.com:8443 image python3 CVE-2022-22954-POC.py -f 123.txt image

Download Tool