First published: Tue Nov 26 2024(Updated: )
VMware Aria Operations contains a stored cross-site scripting vulnerability. A malicious actor with editing access to views may be able to inject malicious script leading to stored cross-site scripting in the product VMware Aria Operations.
Credit: security@vmware.com
Affected Software | Affected Version | How to fix |
---|---|---|
VMware vRealize Operations |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2024-38832 is classified as a stored cross-site scripting vulnerability that can significantly impact security if exploited.
To fix CVE-2024-38832, ensure that the VMware Aria Operations software is updated to the latest version provided by VMware.
CVE-2024-38832 affects users of VMware Aria Operations who have editing access to views.
An attacker with editing access may inject malicious scripts, leading to stored cross-site scripting vulnerabilities in VMware Aria Operations.
Currently, the best approach for CVE-2024-38832 is to update the affected software as there are no known workarounds.