VMware

Vrealize Log Insight

15 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 0.74%
  • Veröffentlicht 26.01.2023 21:15:38
  • Zuletzt bearbeitet 01.04.2025 16:15:16

vRealize Log Insight contains a deserialization vulnerability. An unauthenticated malicious actor can remotely trigger the deserialization of untrusted data which could result in a denial of service.

  • EPSS 72.03%
  • Veröffentlicht 26.01.2023 21:15:38
  • Zuletzt bearbeitet 01.04.2025 16:15:16

VMware vRealize Log Insight contains an Information Disclosure Vulnerability. A malicious actor can remotely collect sensitive session and application information without authentication.

  • EPSS 79.97%
  • Veröffentlicht 26.01.2023 21:15:37
  • Zuletzt bearbeitet 02.04.2025 14:15:36

The vRealize Log Insight contains a broken access control vulnerability. An unauthenticated malicious actor can remotely inject code into sensitive files of an impacted appliance which can result in remote code execution.

  • EPSS 82.65%
  • Veröffentlicht 26.01.2023 21:15:37
  • Zuletzt bearbeitet 02.04.2025 14:15:36

The vRealize Log Insight contains a Directory Traversal Vulnerability. An unauthenticated, malicious actor can inject files into the operating system of an impacted appliance which can result in remote code execution.

  • EPSS 0.6%
  • Veröffentlicht 14.12.2022 19:15:13
  • Zuletzt bearbeitet 22.04.2025 16:15:30

The vRealize Log Insight contains a Directory Traversal Vulnerability. An unauthenticated, malicious actor can inject files into the operating system of an impacted appliance which can result in remote code execution.

  • EPSS 1.08%
  • Veröffentlicht 12.07.2022 21:15:10
  • Zuletzt bearbeitet 21.11.2024 07:05:03

VMware vRealize Log Insight in versions prior to 8.8.2 contain a stored cross-site scripting vulnerability due to improper input sanitization in configurations.

  • EPSS 1.08%
  • Veröffentlicht 12.07.2022 21:15:10
  • Zuletzt bearbeitet 21.11.2024 07:05:03

VMware vRealize Log Insight in versions prior to 8.8.2 contain a stored cross-site scripting vulnerability due to improper input sanitization in alerts.

  • EPSS 0.44%
  • Veröffentlicht 13.10.2021 16:15:07
  • Zuletzt bearbeitet 21.11.2024 05:49:28

VMware vRealize Log Insight (8.x prior to 8.6) contains a CSV(Comma Separated Value) injection vulnerability in interactive analytics export function. An authenticated malicious actor with non-administrative privileges may be able to embed untrusted ...

  • EPSS 0.24%
  • Veröffentlicht 30.08.2021 19:15:08
  • Zuletzt bearbeitet 21.11.2024 05:49:27

VMware vRealize Log Insight (8.x prior to 8.4) contains a Cross Site Scripting (XSS) vulnerability due to improper user input validation. An attacker with user privileges may be able to inject a malicious payload via the Log Insight UI which would be...

  • EPSS 0.34%
  • Veröffentlicht 15.04.2020 18:15:15
  • Zuletzt bearbeitet 21.11.2024 05:32:01

Cross Site Scripting (XSS) vulnerability exists in VMware vRealize Log Insight prior to 8.1.0 due to improper Input validation.