CVE-2022-31673

Severity CVSS v4.0:
Pending analysis
Type:
Unavailable / Other
Publication date:
10/08/2022
Last modified:
08/08/2023

Description

VMware vRealize Operations contains an information disclosure vulnerability. A low-privileged malicious actor with network access can create and leak hex dumps, leading to information disclosure. Successful exploitation can lead to a remote code execution.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:vmware:vrealize_operations:*:*:*:*:*:*:*:* 8.0.0 (including) 8.6.4 (excluding)


References to Advisories, Solutions, and Tools