CVE-2025-22216
A UAA configured with multiple identity zones, does not properly validate session information across those zones. A User authenticated against a corporate IDP can re-use their jsessionid to access other zones.
Vendor
-
Product
-
CWE
Yayın Tarihi
2025-01-31 06:15:30
Güncelleme
2025-01-31 18:15:38
Source Identifier
security@vmware.com
KEV Date Added
-