CVE-2017-4932

HIGH

VMware AirWatch Launcher <3.2.2 - Privilege Escalation

Title source: llm
STIX 2.1

Description

VMware AirWatch Launcher for Android prior to 3.2.2 contains a vulnerability that could allow an escalation of privilege from the launcher UI context menu to native UI functionality and privilege. Successful exploitation of this issue could result in an escalation of privilege.

References (3)

Core 3
Core References
Third Party Advisory, VDB Entry vdb-entry x_refsource_sectrack
http://www.securitytracker.com/id/1039750
Patch, Vendor Advisory x_refsource_confirm
https://www.vmware.com/us/security/advisories/VMSA-2017-0016.html
Third Party Advisory, VDB Entry vdb-entry x_refsource_bid
http://www.securityfocus.com/bid/101771

Scores

CVSS v3 7.8
EPSS 0.0012
EPSS Percentile 31.0%
Attack Vector LOCAL
CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

Details

Status published
Products (2)
vmware/airwatch_launcher < 3.2.2
VMware/VMware AirWatch Launcher for Android (AWL) before 3.2.2
Published Nov 16, 2017
Tracked Since Feb 18, 2026