Filters

VMware Aria AutomationVMSA-2024-0017: VMware Aria Automation updates address SQL-injection vulnerability (CVE-2024-22280)

8.5
First published (updated )

VMware ESXiVMware ESXi Authentication Bypass Vulnerability

First published (updated )

Vmware Vrealize OperationsVMware Aria Operations contains a privilege escalation vulnerability. An authenticated malicious use…

8.8
First published (updated )

Vmware Vrealize OperationsVMware Aria Operations contains a deserialization vulnerability. A malicious actor with administrati…

7.2
First published (updated )

VMware Aria Operations for LogsCommand Injection

7.2
First published (updated )

Never miss a vulnerability like this again

Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.

Vmware AccessVMware Workspace ONE Access and Identity Manager contain an authenticated remote code execution vuln…

7.2
First published (updated )

VMware ESXiVMware ESXi contains a memory corruption vulnerability that exists in the way it handles a network s…

8.8
First published (updated )

VMware vCenter ServerSSRF

7.5
First published (updated )

Vmware Vrealize Suite Lifecycle ManagerVMware Workspace ONE Access and Identity Manager contain a privilege escalation vulnerability. A mal…

7.8
First published (updated )

VMware Identity ManagerVMware Workspace ONE Access, Identity Manager and vRealize Automation contain two remote code execut…

7.2
First published (updated )

Never miss a vulnerability like this again

Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.

VMware Identity ManagerVMware Multiple Products Privilege Escalation Vulnerability

First published (updated )

VMware Identity ManagerVMware Workspace ONE Access, Identity Manager and vRealize Automation contain two remote code execut…

7.2
First published (updated )

VMware Cloud FoundationOS Command Injection

7.8
First published (updated )

VMware ESXiESXi contains a slow HTTP POST denial-of-service vulnerability in rhttpproxy. A malicious actor with…

7.5
First published (updated )

VMware ESXiVMware ESXi contains an unauthorized access vulnerability due to VMX having access to settingsd auth…

7.8
First published (updated )

Never miss a vulnerability like this again

Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.

VMware ESXiVMware Workstation SCSI Heap-based Buffer Overflow Privilege Escalation Vulnerability

7.8
First published (updated )

VMware vCenter ServerThe vSphere Web Client (FLEX/Flash) contains an unauthorized arbitrary file read vulnerability. A ma…

7.5
First published (updated )

VMware vCenter ServerThe vCenter Server contains a privilege escalation vulnerability in the IWA (Integrated Windows Auth…

8.8
First published (updated )

VMware vCenter ServerThe vCenter Server contains a denial-of-service vulnerability in VAPI (vCenter API) service. A malic…

7.5
First published (updated )

VMware vCenter ServerPath Traversal

7.5
First published (updated )

Never miss a vulnerability like this again

Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.

VMware vCenter ServerThe vCenter Server contains an information disclosure vulnerability due to an unauthenticated applia…

7.5
First published (updated )

VMware vCenter ServerThe vCenter Server contains a denial-of-service vulnerability in VPXD service. A malicious actor wit…

7.5
First published (updated )

VMware vCenter ServerThe vCenter Server contains multiple denial-of-service vulnerabilities in VAPI (vCenter API) service…

7.5
First published (updated )

VMware vCenter ServerThe vCenter Server contains an information disclosure vulnerability in VAPI (vCenter API) service. A…

7.5
First published (updated )

VMware vCenter ServerThe vCenter Server contains a reverse proxy bypass vulnerability due to the way the endpoints handle…

7.5
First published (updated )

Never miss a vulnerability like this again

Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.

VMware vCenter ServerThe vCenter Server contains multiple local privilege escalation vulnerabilities due to improper perm…

7.8
First published (updated )

VMware vCenter ServerThe vCenter Server contains a local privilege escalation vulnerability due to the way it handles ses…

7.8
First published (updated )

VMware Cloud FoundationVMware Workspace ONE Access and Identity Manager, unintentionally provide a login interface on port …

7.5
First published (updated )

VMware Cloud FoundationThe vRealize Operations Manager API (8.x prior to 8.5) contains a broken access control vulnerabilit…

7.5
First published (updated )

VMware Cloud FoundationSSRF

7.5
First published (updated )

Never miss a vulnerability like this again

Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.

VMware Cloud FoundationSSRF

7.5
First published (updated )

VMware Cloud FoundationThe vRealize Operations Manager API (8.x prior to 8.5) contains an arbitrary log-file read vulnerabi…

7.5
First published (updated )

VMware Cloud FoundationThe vRealize Operations Manager API (8.x prior to 8.5) has insecure object reference vulnerability. …

7.2
First published (updated )

VMware ESXiOpenSLP as used in ESXi has a denial-of-service vulnerability due a heap out-of-bounds read issue. A…

7.5
First published (updated )

VMware Cloud FoundationVMware Server Side Request Forgery in vRealize Operations Manager API

First published (updated )

Never miss a vulnerability like this again

Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.

VMware Cloud FoundationArbitrary file write vulnerability in vRealize Operations Manager API (CVE-2021-21983) prior to 8.4 …

8.5
First published (updated )

VMware ESXiVMware ESXi SLP Heap-based Buffer Overflow Remote Code Execution Vulnerability

First published (updated )

VMware ESXiUse After Free

8.2
First published (updated )

VMware ESXiVMware ESXi (7.0 before ESXi70U1b-17168206, 6.7 before ESXi670-202011101-SG, 6.5 before ESXi650-2020…

7.8
First published (updated )

VMware vCenter ServerVMware vCenter Server (6.7 before 6.7u3, 6.6 before 6.5u3k) contains a session hijack vulnerability …

7.4
First published (updated )

Never miss a vulnerability like this again

Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.

VMware ESXiVMware ESXi (7.0 before ESXi_7.0.1-0.0.16850804, 6.7 before ESXi670-202008101-SG, 6.5 before ESXi650…

7.7
First published (updated )

VMware ESXiVMware Workstation EHCI Time-Of-Check Time-Of-Use Privilege Escalation Vulnerability

7.5
First published (updated )

VMware ESXiVMware Workstation xHCI Isoch TD Out-Of-Bounds Write Privilege Escalation Vulnerability

8.2
First published (updated )

VMware ESXiVMware Workstation EHCI Heap-based Buffer Overflow Privilege Escalation Vulnerability

7.5
First published (updated )

VMware ESXiVMware Workstation SVGA DXInvalidateContext Use-After-Free Privilege Escalation Vulnerability

8.2
First published (updated )

Never miss a vulnerability like this again

Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.

VMware ESXiVMware Workstation SVGA3D Command Heap Overflow Privilege Escalation Vulnerability

8.8
First published (updated )

Linuxfoundation HarborHarbor API has a Broken Access Control vulnerability. The vulnerability allows project administrator…

7.5
First published (updated )

Contact

SecAlerts Pty Ltd.
132 Wickham Terrace
Fortitude Valley,
QLD 4006, Australia
info@secalerts.co
By using SecAlerts services, you agree to our services end-user license agreement. This website is safeguarded by reCAPTCHA and governed by the Google Privacy Policy and Terms of Service. All names, logos, and brands of products are owned by their respective owners, and any usage of these names, logos, and brands for identification purposes only does not imply endorsement. If you possess any content that requires removal, please get in touch with us.
© 2024 SecAlerts Pty Ltd.
ABN: 70 645 966 203, ACN: 645 966 203