---
title: "Impact of VMware Vulnerabilities on Pharos Products - May 2022"
slug: "impact-of-vmware-vulnerabilities-on-pharos-products"
updated: 2024-04-05T07:10:12Z
published: 2024-04-05T07:10:12Z
canonical: "kb.pharos.com/impact-of-vmware-vulnerabilities-on-pharos-products"
---

> ## Documentation Index
> Fetch the complete documentation index at: https://kb.pharos.com/llms.txt
> Use this file to discover all available pages before exploring further.

# Impact of VMware Vulnerabilities on Pharos Products - May 2022

#### **Impact of VMware Vulnerabilities on Pharos products**

Pharos is NOT impacted by the following VMware vulnerabilities:

- CVE-2022-22954: A remote code execution vulnerability that could enable a malicious actor with network access to trigger a server-side template injection that may result in an RCE
- CVE-2022-22960: A privilege escalation flaw that could enable a malicious actor with root access to wipe logs, escalate permissions and move laterally to other systems
- CVE-2022-22972: An authentication bypass vulnerability that could allow a malicious actor with network access to the UI to obtain administrative access without the need to authenticate
- CVE-2022-22973: A local privilege escalation vulnerability that could allow a malicious actor with local access to escalate privileges to ‘root’

Pharos solutions do NOT use any of the vulnerable VMware products:

- VMware Workspace ONE Access (Access)
- VMware Identity Manager (vIDM)
- VMware vRealize Automation (vRA)
- VMware Cloud Foundation
- vRealize Suite Lifecycle Manager

## Related

- [Printer load balancing](/printer-load-balancing.md)
- [PDF printing is slow or delayed.](/pdf-printing-is-slow-or-delayed.md)
