VMware Alert: Uninstall EAP Now - Critical Flaw Puts Active Directory at Risk

Discussion in 'News Aggregator' started by The Hacker News, 21 Feb 2024.

  1. VMware is urging users to uninstall the deprecated Enhanced Authentication Plugin (EAP) following the discovery of a critical security flaw. Tracked as CVE-2024-22245 (CVSS score: 9.6), the vulnerability has been described as an arbitrary authentication relay bug. "A malicious actor could trick a target domain user with EAP installed in their web browser into requesting and relaying

    Continue reading...
     

Share This Page

Loading...