CVE-2022-31672: High severity vmware vrealize operations vulnerability
Published Aug 9, 2022
·Updated
VMware vRealize Operations contains a privilege escalation vulnerability. A malicious actor with administrative network access can escalate privileges to root.
Affected Software
1 affected component
VMware vRealize Operations>=8.0.0<8.6.4
Remediation
Event History
Aug 9, 2022
CVE Published
via MITRE·08:18 PM
Data Sourced
via MITRE·08:18 PM
DescriptionWeakness
Aug 10, 2022
Data Sourced
via NVD·08:15 PM
RemedyDescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is CVE-2022-31672?
CVE-2022-31672 is a privilege escalation vulnerability in VMware vRealize Operations.
2
How does CVE-2022-31672 impact VMware vRealize Operations?
CVE-2022-31672 allows a malicious actor with administrative network access to escalate privileges to root.
3
Which versions of VMware vRealize Operations are affected by CVE-2022-31672?
CVE-2022-31672 affects versions between 8.0.0 and 8.6.4 of VMware vRealize Operations.
4
What is the severity of CVE-2022-31672?
CVE-2022-31672 has a severity rating of 7.2 (high).
5
Where can I find more information about CVE-2022-31672?
You can find more information about CVE-2022-31672 in the VMware security advisory: https://www.vmware.com/security/advisories/VMSA-2022-0022.html