cve,link,title,description,vendor,products,score,severity,epss,cisa,cisa_published,article,ransomware,exploited,exploited_date,poc,trended,trended_no_1,trended_no_1_date,published,trended_score CVE-2023-20884,https://securityvulnerability.io/vulnerability/CVE-2023-20884,Insecure Redirect Vulnerability in VMware Workspace ONE Access and VMware Identity Manager,"VMware Workspace ONE Access and VMware Identity Manager are susceptible to an insecure redirect vulnerability due to insufficient path validation. This flaw allows an unauthenticated adversary to redirect users to a malicious domain, potentially exposing sensitive information. By exploiting this vulnerability, attackers can manipulate legitimate user requests, leading to data leakage and other security concerns.",Vmware,"VMware Workspace ONE Access (Access), VMware Identity Manager (vIDM), VMware Cloud Foundation (Cloud Foundation)",6.1,MEDIUM,0.0005600000149570405,false,,false,false,false,,,false,false,,2023-05-30T16:15:00.000Z,0 CVE-2020-4006,https://securityvulnerability.io/vulnerability/CVE-2020-4006,Command Injection Vulnerability in VMware Workspace ONE Access and Identity Manager,"VMware Workspace ONE Access, Access Connector, Identity Manager, and Identity Manager Connector have a vulnerability that allows for command injection. This can potentially enable attackers to execute arbitrary commands on the affected system, leading to unauthorized access and manipulation of sensitive data. It is crucial for users to apply the necessary updates and patches to mitigate this security risk.",Vmware,"Vmware Workspace One Access (access), Vmware Workspace One Access Connector (access Connector), Vmware Identity Manager (vidm), Vmware Identity Manager Connector (vidm Connector), Vmware Cloud Foundation, Vrealize Suite Lifecycle Manager",9.1,CRITICAL,0.5521199703216553,true,2021-11-03T00:00:00.000Z,false,false,true,2021-11-03T00:00:00.000Z,,false,false,,2020-11-23T21:22:40.000Z,0