Critical Vulnerabilities VMware vRealize Log Insight
ID: cc723d37-5ead-504f-bcb2-3fa1d2fd78e2
STIX ID: report--cc723d37-5ead-504f-bcb2-3fa1d2fd78e2
Feed Name: Arctic Wolf Blog
Threat Score
VMware disclosed multiple vulnerabilities in vRealize Log Insight (including two critical CVEs 2022-31706 and 2022-31704 with CVSS 9.8) that could permit unauthenticated file injection leading to remote code execution; VMware released fixes (v8.10.2) and workarounds, and the advisory notes no public PoC or active exploitation as of 2023-01-25 while recommending immediate upgrades or application of provided workarounds.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
