CVE-2017-4930: VMware Airwatch
Medium severity, CVSS 5.4. EPSS: 0.9% chance of exploitation in the next 30 days.
VMware AirWatch Console 9.x prior to 9.2.0 contains a vulnerability that could allow an authenticated AWC user to add a malicious URL to an enrolled device's 'Links' page. Successful exploitation of this issue could result in an unsuspecting AWC user being redirected to a malicious URL.
Affected products
- VMware Airwatch: from 9.0.0, before 9.2.0 (fixed in 9.2.0)
Published 2017-11-16. Last modified 2026-06-17.