VMware fixes four serious vRealize vulnerabilities

Red padlock open on electric circuits network dark red background
VMware fixes four serious vRealize vulnerabilities

[ad_1]

Virtualization giant VMware has released patches for four vulnerabilities in its vRealize Log Insight product, two of which have a “critical” severity rating.

The critical pair are CVE-2022-31703 and CVE-2022-31704. The former is a directory traversal vulnerability, while the latter is a broken access control vulnerability. Both were given a 9.8 severity score, and both allow threat actors to access resources that should otherwise be inaccessible.

[ad_2]

Source link

Leave a Reply

Your email address will not be published. Required fields are marked *