Home
HIGH: 7.1 CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:L/A:NDefault status
unaffected
Omnissa Unified Access Gateway 2412 or earlier
affected
Description
Omnissa UAG contains a Cross-Origin Resource Sharing (CORS) bypass vulnerability. A malicious actor with network access to UAG may be able to bypass administrator-configured CORS restrictions to gain access to sensitive networks.
Product status
Omnissa Unified Access Gateway 2412 or earlier
References
static.omnissa.com/sites/default/files/OMSA-2025-0002.pdf
www.omnissa.com/omnissa-security-response/