References https://nvd.nist.gov/vuln/detail/cve-2022-22957 https://support.broadcom.com/web/ecx/support-content-notification/-/external/content/SecurityAdvisories/0/23639 https://www.njgypower.com/news_2019/lists_/VMware20220413.html https://www.tenablecloud.cn/plugins/nessus/159548 https://www.anquanke.com/post/id/275079 https://cloud.tencent.com/developer/article/2087159 https://zhuanlan.zhihu.com/p/558076064 https://avd.aliyun.com/detail?id=AVD-2022-22957 https://www.govcert.gov.hk/tc/alerts_detail.php?id=775 https://www.h3c.com/cn/d_202207/1644543_30003_0.htm https://www.51cto.com/article/707605.html https://kb.omnissa.com/s/article/88099 https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2022-22957 https://www.quorumcyber.com/threat-intelligence/hekate-exploit-code-released-for-vmware-workspace-one/
Related VulnerabilitiesPoCCVE-2026-59177: ESPHome Device Builder <1.0.10 - Unauthenticated Dashboard AccessPoCCVE-2026-81578: PaperCut NG/MF <=26.0.4 - Unauthenticated ConfigEditor Access via Tapestry Complex-DirectPoCCVE-2026-82329: JFrog Artifactory Access Blank Join Key Authentication BypassPoCCVE-2026-86206: N-able N-central - Access Control Bypass via Path Confusion and Forwarded Header SpoofingPoCCVE-2026-86426: LibreNMS <= 26.7.0 - Unauthenticated API AccessPoCgrafana-loki-api-exposure: Grafana Loki - Unauthenticated API Access大华-智慧园区综合管理平台 updateAccessChannelByVisit SQL注入漏洞VMware ESXi /sdk 默认口令漏洞PoCseaweedfs-unauth: SeaweedFS Filer - Unauthenticated AccessUniFi Access /api/ucore/backup/export 命令执行漏洞(CVE-2025-52665)技嘉科技|Gigabyte Control Center - Improper Access ControlPoCopcache-control-panel: Opcache control Panel - Unauthenticated AccessProgress Kemp LoadMaster /accessv2 命令执行漏洞(CVE-2026-8037)