First published: Thu Jan 30 2025(Updated: )
VMware Aria Operations for Logs contains an information disclosure vulnerability. A malicious actor with View Only Admin permissions may be able to read the credentials of a VMware product integrated with VMware Aria Operations for Logs
Credit: security@vmware.com
Affected Software | Affected Version | How to fix |
---|---|---|
VMware Aria Operations for Logs |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
(Found alongside the following vulnerabilities)
CVE-2025-22218 is classified as an information disclosure vulnerability.
CVE-2025-22218 affects VMware Aria Operations for Logs users with View Only Admin permissions.
The vulnerability may allow unauthorized access to read the credentials of integrated VMware products.
To remediate CVE-2025-22218, apply the latest security patches provided by VMware for Aria Operations for Logs.
No effective workarounds have been documented for CVE-2025-22218 at this time.