First published: Thu Dec 29 2016(Updated: )
VMware vRealize Operations (aka vROps) 6.x before 6.4.0 allows remote authenticated users to gain privileges, or halt and remove virtual machines, via unspecified vectors.
Credit: security@vmware.com
Affected Software | Affected Version | How to fix |
---|---|---|
VMware vRealize Operations | =6.0.0 | |
VMware vRealize Operations | =6.1.0 | |
VMware vRealize Operations | =6.2.0a | |
VMware vRealize Operations | =6.2.1 | |
VMware vRealize Operations | =6.3.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2016-7457 is considered a critical vulnerability due to its potential impact on user privileges and virtual machine management.
To fix CVE-2016-7457, upgrade to VMware vRealize Operations version 6.4.0 or later.
CVE-2016-7457 affects users of VMware vRealize Operations versions 6.0.0 through 6.3.0.
The potential consequences of CVE-2016-7457 include unauthorized privilege escalation and the ability to halt or remove virtual machines.
The vulnerable versions for CVE-2016-7457 are 6.0.0, 6.1.0, 6.2.0a, 6.2.1, and 6.3.0.