VMware Workspace ONE Access and Identity Manager contain a remote code execution vulnerability due to server-side template injection. A malicious actor with network access can trigger a server-side template injection that may result in remote code execution.
https://www.akamai.com/blog/security-research/2024-redtail-cryptominer-pan-os-cve-exploit
https://www.cisa.gov/news-events/cybersecurity-advisories/aa23-215a
https://www.cisa.gov/news-events/cybersecurity-advisories/aa22-138b
https://www.tenable.com/blog/aa23-215a-2022s-top-routinely-exploited-vulnerabilities
https://www.tenable.com/blog/vmware-patches-multiple-vulnerabilities-in-workspace-one-vmsa-2022-0011
https://github.com/Vekronrr/threat-intel-rag
https://github.com/Schira4396/VcenterKiller
https://github.com/StarCrossPortal/VulnsDB
https://github.com/arzuozkan/CVE-2022-22954
https://github.com/Chocapikk/CVE-2022-22954
https://github.com/W01fh4cker/Serein
https://github.com/nguyenv1nK/CVE-2022-22954
https://github.com/kaanymz/2022-04-06-critical-vmware-fix
https://github.com/astraztech/vmware4shell
https://github.com/MLX15/CVE-2022-22954
https://github.com/bewhale/CVE-2022-22954
https://github.com/MSeymenD/CVE-2022-22954-Testi
https://github.com/avboy1337/CVE-2022-22954-VMware-RCE
https://github.com/chaosec2021/CVE-2022-22954-VMware-RCE
https://github.com/axingde/CVE-2022-22954-POC
https://www.vmware.com/security/advisories/VMSA-2022-0011.html
https://www.cisa.gov/known-exploited-vulnerabilities-catalog?field_cve=CVE-2022-22954