Rewterz Threat Alert – DarkSide Ransomware – Active IOCs
May 31, 2023Rewterz Threat Advisory – Multiple IBM QRadar WinCollect Agent Vulnerabilities
June 1, 2023Rewterz Threat Alert – DarkSide Ransomware – Active IOCs
May 31, 2023Rewterz Threat Advisory – Multiple IBM QRadar WinCollect Agent Vulnerabilities
June 1, 2023Severity
Medium
Analysis Summary
CVE-2023-20884
VMware Workspace ONE Access and Identity Manager could allow a remote attacker to conduct phishing attacks, caused by an open redirect vulnerability. An attacker could exploit this vulnerability using a specially crafted URL to redirect a victim to arbitrary Web sites.
Impact
- Gain Access
Indicators Of Compromise
CVE
- CVE-2023-33010
- CVE-2023-33009
Affected Vendors
VMware
Affected Products
- VMWare Workspace ONE Access 22.09.0.0
- VMware Identity Manager 3.3.6
- VMWare Workspace ONE Access 21.08.0.0
- VMware Cloud Foundation
Remediation
Refer to VMware Security Advisory for patch, upgrade or suggested workaround information.