Show filters
25 Total Results
Displaying 11-20 of 25
Sort by:
Attacker Value
Unknown
CVE-2024-38831
Disclosure Date: November 26, 2024 (last updated January 05, 2025)
VMware Aria Operations contains a local privilege escalation vulnerability. A malicious actor with local administrative privileges can insert malicious commands into the properties file to escalate privileges to a root user on the appliance running VMware Aria Operations.
0
Attacker Value
Unknown
CVE-2024-38830
Disclosure Date: November 26, 2024 (last updated January 05, 2025)
VMware Aria Operations contains a local privilege escalation vulnerability. A malicious actor with local administrative privileges may trigger this vulnerability to escalate privileges to root user on the appliance running VMware Aria Operations.
0
Attacker Value
Unknown
CVE-2024-22235
Disclosure Date: February 21, 2024 (last updated February 13, 2025)
VMware Aria Operations contains a local privilege escalation vulnerability. A malicious actor with administrative access to the local system can escalate privileges to 'root'.
0
Attacker Value
Unknown
CVE-2024-22241
Disclosure Date: February 06, 2024 (last updated February 10, 2024)
Aria Operations for Networks contains a cross site scripting vulnerability. A malicious actor with admin privileges can inject a malicious payload into the login banner and takeover the user account.
0
Attacker Value
Unknown
CVE-2024-22240
Disclosure Date: February 06, 2024 (last updated February 10, 2024)
Aria Operations for Networks contains a local file read vulnerability. A malicious actor with admin privileges may exploit this vulnerability leading to unauthorized access to sensitive information.
0
Attacker Value
Unknown
CVE-2024-22239
Disclosure Date: February 06, 2024 (last updated February 10, 2024)
Aria Operations for Networks contains a local privilege escalation vulnerability. A console user with access to Aria Operations for Networks may exploit this vulnerability to escalate privileges to gain regular shell access.
0
Attacker Value
Unknown
CVE-2024-22238
Disclosure Date: February 06, 2024 (last updated February 10, 2024)
Aria Operations for Networks contains a cross site scripting vulnerability. A malicious actor with admin privileges may be able to inject malicious code into user profile configurations due to improper input sanitization.
0
Attacker Value
Unknown
CVE-2024-22237
Disclosure Date: February 06, 2024 (last updated February 10, 2024)
Aria Operations for Networks contains a local privilege escalation vulnerability. A console user with access to Aria Operations for Networks may exploit this vulnerability to escalate privileges to gain root access to the system.
0
Attacker Value
Unknown
CVE-2023-34052
Disclosure Date: October 20, 2023 (last updated October 31, 2023)
VMware Aria Operations for Logs contains a deserialization vulnerability. A malicious actor with non-administrative access to the local system can trigger the deserialization of data which could result in authentication bypass.
0
Attacker Value
Unknown
CVE-2023-34051
Disclosure Date: October 20, 2023 (last updated October 31, 2023)
VMware Aria Operations for Logs contains an authentication bypass vulnerability. An unauthenticated, malicious actor can inject files into the operating system of an impacted appliance which can result in remote code execution.
0