CVE-2018-6968: The VMware AirWatch Agent for Android prior to 8.2 and AirWatch Agent for Windows Mobile prior to 6.5.2 contain a remote
infovulnerability
security
Summary
CVE-2018-6968 is a remote code execution vulnerability (where an attacker can run malicious code on a system they don't own) in VMware AirWatch Agent for Android before version 8.2 and Windows Mobile before version 6.5.2. A malicious administrator could exploit the File Manager feature to create and run unauthorized files in the app's sandbox (an isolated storage area) and publicly accessible directories like SD cards.
Solution / Mitigation
Update VMware AirWatch Agent for Android to version 8.2 or later, and AirWatch Agent for Windows Mobile to version 6.5.2 or later.
Vulnerability Details
CVSS Score
7.5
EPSS (30-day exploit probability)
EPSS: 9.5%
Classification
Attack SophisticationModerate
Original source: https://nvd.nist.gov/vuln/detail/CVE-2018-6968
First tracked: February 15, 2026 at 08:53 PM
Classified by LLM (prompt v3) · confidence: 95%