CVE-2022-31682
published 2022-10-11CVE-2022-31682: VMware Aria Operations contains an arbitrary file read vulnerability. A malicious actor with administrative privileges may be able to read arbitrary files…
PriorityP426medium4.9CVSS 3.1
AVNACLPRHUINSUCHINAN
EPSS
0.58%
44.1th percentile
VMware Aria Operations contains an arbitrary file read vulnerability. A malicious actor with administrative privileges may be able to read arbitrary files containing sensitive data.
Affected
1 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| vmware | vrealize_operations | >= 8.0 < 8.10 | 8.10 |
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
VMware
VMware vRealize Operations patches address an arbitrary file read vulnerability (CVE-2022-31682).
vendor_vmware·2022-10-11·CVSS 4.9
CVE-2022-31682 [MEDIUM] VMware vRealize Operations patches address an arbitrary file read vulnerability (CVE-2022-31682).
VMSA-2022-0026: VMware vRealize Operations patches address an arbitrary file read vulnerability (CVE-2022-31682).
VMware vRealize Operations contains an arbitrary file read vulnerability. VMware has evaluated the severity of this issue to be in the Moderate severity range with a maximum CVSSv3 base score of 4.9.
CVEs: CVE-2022-31682
Affected products: VMware Aria, VMware vRealize
GHSA
GHSA-jjj6-j55h-4rvh: VMware Aria Operations contains an arbitrary file read vulnerability
ghsa_unreviewed·2022-10-12
CVE-2022-31682 [MEDIUM] GHSA-jjj6-j55h-4rvh: VMware Aria Operations contains an arbitrary file read vulnerability
VMware Aria Operations contains an arbitrary file read vulnerability. A malicious actor with administrative privileges may be able to read arbitrary files containing sensitive data.
No detection rules found.
No public exploits indexed.
No writeups or analysis indexed.
2022-10-11
Published