CVE Published: 11/08/2021 |
CVE Updated: 03/08/2024 |
CVE Year: 2021 Source: vmware |
Vendor: n/a |
Product: UAA server Status : PUBLISHED
CVE-2021-22098 Description
UAA server versions prior to 75.4.0 are vulnerable to an open redirect vulnerability. A malicious user can exploit the open redirect vulnerability by social engineering leading to take over of victims’ accounts in certain cases along with redirection of UAA users to a malicious sites.