cve entity

CVE-2020-4006

1 source-linked records in the current knowledge graph.

high

CVE-2020-4006: Multiple VMware Products Command Injection Vulnerability

VMware Workspace One Access, Access Connector, Identity Manager, and Identity Manager Connector contain a command injection vulnerability. An attacker with network access to the administrative configurator on port 8443 and a valid password for the configurator administrator account can execute commands with unrestricted privileges on the underlying operating system. Required action: Apply updates per vendor instructions.

CVE-2020-4006EPSS 23.8%Multiple ProductsVMware
CISA KEV ↗ · unattributed attribution