logo

Critical Vulnerabilities VMware vRealize Log Insight

ID: cc723d37-5ead-504f-bcb2-3fa1d2fd78e2

STIX ID: report--cc723d37-5ead-504f-bcb2-3fa1d2fd78e2

Feed Name: Arctic Wolf Blog

Threat Score
70/100

Date Published: 2023-01-26

Date Updated: 2026-04-27

...
...

VMware disclosed multiple vulnerabilities in vRealize Log Insight (including two critical CVEs 2022-31706 and 2022-31704 with CVSS 9.8) that could permit unauthenticated file injection leading to remote code execution; VMware released fixes (v8.10.2) and workarounds, and the advisory notes no public PoC or active exploitation as of 2023-01-25 while recommending immediate upgrades or application of provided workarounds.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.