Record summary

CVE-2021-22054 has a selected CVSS score of 7.5 (high); EIP currently links 1 repository PoC and 1 Nuclei template. CISA lists CVE-2021-22054 in KEV.

Description

VMware Workspace ONE UEM console 20.0.8 prior to 20.0.8.37, 20.11.0 prior to 20.11.0.40, 21.2.0 prior to 21.2.0.27, and 21.5.0 prior to 21.5.0.37 contain an SSRF vulnerability. This issue may allow a malicious actor with network access to UEM to send their requests without authentication and to gain access to sensitive information.

Description source: CVE List

Exploitation context

Known exploitation

CISA KEV
Listed · Mar 9, 2026 · CISA
VulnCheck KEV
Listed · Mar 11, 2025 · VulnCheck
Reported exploitation
Observed · VulnCheck

Available material

Repository PoCs
1
Nuclei templates
1

CISA SSVC decision

ExploitationActive
AutomatableYes
Technical impactTotal

CISA Coordinator · SSVC 2.0.3 · Evaluated Dec 20, 2021 · Source: CVE List

Affected products and versions

2
ProductSourceVersion rangeStatus
CISAVersion data not supplied

VMware Workspace ONE UEM console

CVE ListVMware Workspace ONE UEM console 20.0.8 prior to 20.0.8.37, 20.11.0 prior to 20.11.0.40, 21.2.0 prior to 21.2.0.27, and 21.5.0 prior to 21.5.0.37.affected

Proofs of concept

1

Repository PoCs

GitHubMKSx/CVE-2021-22054Repository PoCby MKSxStars: 5Not analyzed3 files

8.6 KiB

GitHub

PoC details

Nuclei templates

1
ProjectDiscoveryHIGHVMWare Workspace ONE UEM - Server-Side Request ForgeryCVSS 7.5

VMware Workspace ONE UEM console 20.0.8 prior to 20.0.8.37, 20.11.0 prior to 20.11.0.40, 21.2.0 prior to 21.2.0.27, and 21.5.0 prior to 21.5.0.37 contain a server-side request forgery vulnerability. This issue may allow a malicious actor with network access to UEM to send their requests without authentication and to gain access to sensitive information.

Impact

An attacker can exploit this vulnerability to send crafted requests to internal resources, potentially leading to unauthorized access or information disclosure.

Remediation

Apply the necessary patches or updates provided by VMWare to fix the vulnerability.

WeaknessesCWE-918
Authorsh1ei1
Template tagscve2021cvevmwareworkspacessrfvkevvulnkev
CVSS vector: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
CPE: cpe:2.3:a:vmware:workspace_one_uem_console:*:*:*:*:*:*:*:*
FOFA: banner="/AirWatch/default.aspx" || header="/AirWatch/default.aspx"
FOFA: banner="/airwatch/default.aspx" || header="/airwatch/default.aspx"

Source: ProjectDiscovery

References

4