Security Advisory

CVE-2017-4951

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2018-01-29 16:00:00
Last updated 2024-09-16 20:03:05
Assigner vmware
CVSS score not scored
State PUBLISHED

Description

VMware AirWatch Console (9.2.x before 9.2.2 and 9.1.x before 9.1.5) contains a Cross Site Request Forgery vulnerability when accessing the App Catalog. An attacker may exploit this issue by tricking users into installing a malicious application on their devices.