Authentication Bypass Vulnerability in VMware vRealize Operations
CVE-2022-31675

7.5HIGH

Key Information:

Vendor
Vmware
Vendor
CVE Published:
9 August 2022

Summary

The authentication bypass vulnerability in VMware vRealize Operations allows unauthorized users to exploit network access and create administrative user accounts. This potentially grants malicious actors extensive control over the affected systems, leading to significant security risks. It is essential for administrators to apply necessary security updates to mitigate this risk.

Affected Version(s)

VMware vRealize Operations VMware vRealize Operations (8.x prior to 8.6.4)

References

CVSS V3.1

Score:
7.5
Severity:
HIGH
Confidentiality:
None
Integrity:
High
Availability:
None
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.