imPC@ndo EN

Vulnerabilità VMware

956 CVE

CVE-2023-20889
Alta 7.5

Aria Operations for Networks contains an information disclosure vulnerability. A malicious actor with network access to VMware Aria Operations for Networks may be able to perform a command injection attack resulting in information disclosure.

vmware vrealize_network_insight
0.79EPSS
CVE-2018-1270
Critica 9.8

Spring Framework, versions 5.0 prior to 5.0.5 and versions 4.3 prior to 4.3.15 and older unsupported versions, allow applications to expose STOMP over WebSocket endpoints with a simple, in-memory STOMP broker through the spring-messaging module. A malicious us…

debian debian_linux · oracle application_testing_suite · oracle big_data_discovery · oracle communications_converged_application_server · e altri 24
0.77EPSS
CVE-2017-8046
Critica 9.8

Malicious PATCH requests submitted to servers using Spring Data REST versions prior to 2.6.9 (Ingalls SR9), versions prior to 3.0.1 (Kay SR1) and Spring Boot versions prior to 1.5.9, 2.0 M6 can use specially crafted JSON data to run arbitrary Java code.

pivotal_software spring_data_rest · vmware spring_boot · vmware spring_data_rest
0.74EPSS
CVE-2023-20864
Critica 9.8

VMware Aria Operations for Logs contains a deserialization vulnerability. An unauthenticated, malicious actor with network access to VMware Aria Operations for Logs may be able to execute arbitrary code as root.

vmware aria_operations_for_logs · vmware cloud_foundation
0.70EPSS
CVE-2020-5405
Media 6.5

Spring Cloud Config, versions 2.2.x prior to 2.2.2, versions 2.1.x prior to 2.1.7, and older unsupported versions allow applications to serve arbitrary configuration files through the spring-cloud-config-server module. A malicious user, or attacker, can send a…

vmware spring_cloud_config
0.69EPSS
CVE-2021-21983
Media 6.5

Arbitrary file write vulnerability in vRealize Operations Manager API (CVE-2021-21983) prior to 8.4 may allow an authenticated malicious actor with network access to the vRealize Operations Manager API can write files to arbitrary locations on the underlying p…

vmware cloud_foundation · vmware vrealize_operations_manager · vmware vrealize_suite_lifecycle_manager
0.69EPSS
CVE-2023-34039
Critica 9.8

Aria Operations for Networks contains an Authentication Bypass vulnerability due to a lack of unique cryptographic key generation. A malicious actor with network access to Aria Operations for Networks could bypass SSH authentication to gain access to the Aria …

vmware aria_operations_for_networks
0.64EPSS
CVE-2011-4404
Media 5.0

The default configuration of the HTTP server in Jetty in vSphere Update Manager in VMware vCenter Update Manager 4.0 before Update 4 and 4.1 before Update 2 allows remote attackers to conduct directory traversal attacks and read arbitrary files via unspecified…

vmware vcenter_update_manager
0.60EPSS
CVE-2018-1275
Critica 9.8

Spring Framework, versions 5.0 prior to 5.0.5 and versions 4.3 prior to 4.3.16 and older unsupported versions, allow applications to expose STOMP over WebSocket endpoints with a simple, in-memory STOMP broker through the spring-messaging module. A malicious us…

oracle application_testing_suite · oracle big_data_discovery · oracle communications_converged_application_server · oracle communications_diameter_signaling_router · e altri 15
0.58EPSS
CVE-2022-22972
Critica 9.8

VMware Workspace ONE Access, Identity Manager and vRealize Automation contain an authentication bypass vulnerability affecting local domain users. A malicious actor with network access to the UI may be able to obtain administrative access without the need to a…

vmware cloud_foundation · vmware identity_manager · vmware vrealize_automation · vmware vrealize_suite_lifecycle_manager · e altri 1
0.56EPSS
CVE-2013-3520
Alta 7.5

VMware vCenter Chargeback Manager (aka CBM) before 2.5.1 does not proper handle uploads, which allows remote attackers to execute arbitrary code via unspecified vectors.

vmware vcenter_chargeback_manager
0.56EPSS
CVE-2022-22956
Critica 9.8

VMware Workspace ONE Access has two authentication bypass vulnerabilities (CVE-2022-22955 & CVE-2022-22956) in the OAuth2 ACS framework. A malicious actor may bypass the authentication mechanism and execute any operation due to exposed endpoints in the authent…

vmware identity_manager · vmware vrealize_automation · vmware workspace_one_access
0.51EPSS
CVE-2022-31698
Media 5.3

The vCenter Server contains a denial-of-service vulnerability in the content library service. A malicious actor with network access to port 443 on vCenter Server may exploit this issue to trigger a denial-of-service condition by sending a specially crafted hea…

vmware cloud_foundation · vmware vcenter_server
0.48EPSS
CVE-2012-3569
Alta 9.3

Format string vulnerability in VMware OVF Tool 2.1 on Windows, as used in VMware Workstation 8.x before 8.0.5, VMware Player 4.x before 4.0.5, and other products, allows user-assisted remote attackers to execute arbitrary code via a crafted OVF file.

vmware ovf_tool · vmware player · vmware workstation
0.48EPSS
CVE-2021-21974
Alta 8.8

OpenSLP as used in ESXi (7.0 before ESXi70U1c-17325551, 6.7 before ESXi670-202102401-SG, 6.5 before ESXi650-202102101-SG) has a heap-overflow vulnerability. A malicious actor residing within the same network segment as ESXi who has access to port 427 may be ab…

vmware cloud_foundation · vmware esxi
0.45EPSS
CVE-2023-34051
Critica 9.8

VMware Aria Operations for Logs contains an authentication bypass vulnerability. An unauthenticated, malicious actor can inject files into the operating system of an impacted appliance which can result in remote code execution.

vmware aria_operations_for_logs
0.45EPSS
CVE-2010-1205
Critica 9.8

Buffer overflow in pngpread.c in libpng before 1.2.44 and 1.4.x before 1.4.3, as used in progressive applications, might allow remote attackers to execute arbitrary code via a PNG image that triggers an additional data row.

apple iphone_os · apple itunes · apple mac_os_x · apple mac_os_x_server · e altri 13
0.43EPSS
CVE-2020-4000
Alta 8.8

The SD-WAN Orchestrator 3.3.2 prior to 3.3.2 P3, 3.4.x prior to 3.4.4, and 4.0.x prior to 4.0.1 allows for executing files through directory traversal. An authenticated SD-WAN Orchestrator user is able to traversal directories which may lead to code execution …

vmware sd-wan_orchestrator
0.43EPSS
CVE-2011-2217
Alta 9.3

Certain ActiveX controls in (1) tsgetxu71ex552.dll and (2) tsgetx71ex552.dll in Tom Sawyer GET Extension Factory 5.5.2.237, as used in VI Client (aka VMware Infrastructure Client) 2.0.2 before Build 230598 and 2.5 before Build 204931 in VMware Infrastructure 3…

tomsawyer get_extension_factory · vmware infrastructure · vmware virtual_infrastructure_client
0.42EPSS
CVE-2024-22241
Media 4.3

Aria Operations for Networks contains a cross site scripting vulnerability. A malicious actor with admin privileges can inject a malicious payload into the login banner and takeover the user account.  

vmware aria_operations_for_networks
0.38EPSS
CVE-2022-22950
Media 6.5

n Spring Framework versions 5.3.0 - 5.3.16 and older unsupported versions, it is possible for a user to provide a specially crafted SpEL expression that may cause a denial of service condition.

vmware spring_framework
0.36EPSS
CVE-2024-37084
Critica 9.8

In Spring Cloud Data Flow versions prior to 2.11.4,  a malicious user who has access to the Skipper server api can use a crafted upload request to write an arbitrary file to any location on the file system which could lead to compromising the server

vmware spring_cloud_data_flow
0.35EPSS
CVE-2018-1271
Media 5.9

Spring Framework, versions 5.0 prior to 5.0.5 and versions 4.3 prior to 4.3.15 and older unsupported versions, allow applications to configure Spring MVC to serve static resources (e.g. CSS, JS, images). When static resources are served from a file system on W…

oracle application_testing_suite · oracle big_data_discovery · oracle communications_converged_application_server · oracle communications_diameter_signaling_router · e altri 24
0.35EPSS
CVE-2023-20894
Alta 8.1

The VMware vCenter Server contains an out-of-bounds write vulnerability in the implementation of the DCERPC protocol. A malicious actor with network access to vCenter Server may trigger an out-of-bound write by sending a specially crafted packet leading to mem…

vmware vcenter_server
0.34EPSS
CVE-2022-31680
Critica 9.1

The vCenter Server contains an unsafe deserialisation vulnerability in the PSC (Platform services controller). A malicious actor with admin access on vCenter server may exploit this issue to execute arbitrary code on the underlying operating system that hosts …

vmware vcenter_server
0.33EPSS