Sploitus Remote Code Execution Vulnerability in VMware Workspace ONE Access
Article Content
- •CVE-2022-22954 allows RCE via SSTI in VMware products.
- •PoC code is publicly available, raising exploitation risk.
- •Organizations using affected VMware services must act quickly.
A critical remote code execution (RCE) vulnerability, CVE-2022-22954, affects VMware Workspace ONE Access and Identity Manager through server-side template injection (SSTI). The vulnerability was first published on April 11, 2022, and was added to the CISA Known Exploited Vulnerabilities (KEV) catalog on April 14, 2022. Recent proof-of-concept (PoC) code has been released, allowing attackers to exploit this vulnerability. The PoC code enables attackers to execute arbitrary commands on affected systems by leveraging specific queries on services like Shodan and Zoomeye. Security professionals are advised to avoid using this PoC in production environments. The vulnerability has been confirmed to impact numerous organizations using the affected VMware products. As of now, the exploit is publicly available, increasing the urgency for organizations to assess their exposure and apply necessary mitigations.
Ask AI about this cluster
Answers cite the sources they use
Timeline
More articles in this cluster (2)
Following this threat?
Track CVE-2022-22954 in your own feed — you're alerted when they show up in new reporting, leak sites or exploitation.
Free account · no card needed
Continue Reading
Critical Cisco FMC Vulnerabilities Under Active Exploitation Cisco's Secure Firewall Management Center (FMC) Software has two critical vulnerabilities, CVE-2026-20079 and CVE-2026-20316, that are currently being exploited by state-sponsored and ransomware actors. CVE-2026-20079, rated 10.0 on the CVSS scale, allows unauthenticated remote attackers to bypass authentication and…
Critical GitLab CVE-2026-85706 Exploited; Microsoft Issues Record 974 Patches A critical CVE-2026-85706 path-traversal vulnerability in GitLab (CVSS 10.0) was exploited in the wild just hours after its disclosure on September 12, 2026. Microsoft released its largest-ever patch batch, addressing 974 vulnerabilities, including several actively exploited Windows flaws. The GitLab flaw allows…