Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
vmware vrealize log insight vulnerabilities and exploits
(subscribe to this query)
9.8
CVSSv3
CVE-2022-31704
The vRealize Log Insight contains a broken access control vulnerability. An unauthenticated malicious actor can remotely inject code into sensitive files of an impacted appliance which can result in remote code execution.
Vmware Vrealize Log Insight
2 Github repositories
1 Article
9.8
CVSSv3
CVE-2022-31706
The vRealize Log Insight contains a Directory Traversal Vulnerability. An unauthenticated, malicious actor can inject files into the operating system of an impacted appliance which can result in remote code execution.
Vmware Vrealize Log Insight
2 Github repositories
8.8
CVSSv3
CVE-2016-2082
Cross-site request forgery (CSRF) vulnerability in VMware vRealize Log Insight 2.x and 3.x prior to 3.3.2 allows remote malicious users to hijack the authentication of unspecified victims via unknown vectors.
Vmware Vrealize Log Insight 2.5.1
Vmware Vrealize Log Insight 2.0.5
Vmware Vrealize Log Insight 2.0
Vmware Vrealize Log Insight 3.3
Vmware Vrealize Log Insight 3.3.1
Vmware Vrealize Log Insight 3.0
Vmware Vrealize Log Insight 3.0.1
Vmware Vrealize Log Insight 2.5
7.5
CVSSv3
CVE-2022-31710
vRealize Log Insight contains a deserialization vulnerability. An unauthenticated malicious actor can remotely trigger the deserialization of untrusted data which could result in a denial of service.
Vmware Vrealize Log Insight
1 Article
7.5
CVSSv3
CVE-2022-31703
The vRealize Log Insight contains a Directory Traversal Vulnerability. An unauthenticated, malicious actor can inject files into the operating system of an impacted appliance which can result in remote code execution.
Vmware Vrealize Log Insight
1 Article
7.2
CVSSv3
CVE-2018-6980
VMware vRealize Log Insight (4.7.x prior to 4.7.1 and 4.6.x prior to 4.6.2) contains a vulnerability due to improper authorization in the user registration method. Successful exploitation of this issue may allow Admin users with view only permission to perform certain administrat...
Vmware Vrealize Log Insight
6.1
CVSSv3
CVE-2020-3954
Open Redirect vulnerability exists in VMware vRealize Log Insight before 8.1.0 due to improper Input validation.
Vmware Vrealize Log Insight
6.1
CVSSv3
CVE-2016-2081
Cross-site scripting (XSS) vulnerability in VMware vRealize Log Insight 2.x and 3.x prior to 3.3.2 allows remote malicious users to inject arbitrary web script or HTML via unspecified vectors.
Vmware Vrealize Log Insight 3.3
Vmware Vrealize Log Insight 3.0
Vmware Vrealize Log Insight 3.3.1
Vmware Vrealize Log Insight 2.0.5
Vmware Vrealize Log Insight 2.0
Vmware Vrealize Log Insight 2.5.1
Vmware Vrealize Log Insight 2.5
Vmware Vrealize Log Insight 3.0.1
5.4
CVSSv3
CVE-2022-31654
VMware vRealize Log Insight in versions before 8.8.2 contain a stored cross-site scripting vulnerability due to improper input sanitization in configurations.
Vmware Vrealize Log Insight
5.4
CVSSv3
CVE-2022-31655
VMware vRealize Log Insight in versions before 8.8.2 contain a stored cross-site scripting vulnerability due to improper input sanitization in alerts.
Vmware Vrealize Log Insight
CVSSv3
CVSSv2
CVSSv3
VMScore
Recommendations:
CVE-2020-4463
CVE-2024-3400
deserialization
CVE-2024-21788
CVE-2023-42433
CVE-2024-21841
CVE-2024-22095
local file inclusion
memory leak
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
1
2
NEXT »