CVE-2018-6968

The VMware AirWatch Agent for Android prior to 8.2 and AirWatch Agent for Windows Mobile prior to 6.5.2 contain a remote code execution vulnerability in real time File Manager capabilities. This vulnerability may allow for unauthorized creation and execution of files in the Agent sandbox and other publicly accessible directories such as those on the SD card by a malicious administrator.
References
Link Resource
http://www.securityfocus.com/bid/104441 Third Party Advisory VDB Entry
http://www.securitytracker.com/id/1041060 Third Party Advisory VDB Entry
http://www.vmware.com/security/advisories/VMSA-2018-0015.html Vendor Advisory
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:vmware:airwatch_agent:*:*:*:*:*:windows_mobile:*:*
cpe:2.3:a:vmware:airwatch_agent:*:*:*:*:*:android:*:*

History

No history.

Information

Published : 2018-06-11 22:29

Updated : 2024-02-28 16:25


NVD link : CVE-2018-6968

Mitre link : CVE-2018-6968

CVE.ORG link : CVE-2018-6968


JSON object : View

Products Affected

vmware

  • airwatch_agent