CVE-2022-31708

vRealize Operations (vROps) contains a broken access control vulnerability. VMware has evaluated the severity of this issue to be in the Moderate severity range with a maximum CVSSv3 base score of 4.4.
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:vmware:vrealize_operations:*:*:*:*:*:*:*:*
cpe:2.3:a:vmware:vrealize_operations:8.10.0:*:*:*:*:*:*:*

History

18 Apr 2025, 14:15

Type Values Removed Values Added
CWE CWE-284

21 Nov 2024, 07:05

Type Values Removed Values Added
References () https://www.vmware.com/security/advisories/VMSA-2022-0034.html - Patch, Vendor Advisory () https://www.vmware.com/security/advisories/VMSA-2022-0034.html - Patch, Vendor Advisory
Summary
  • (es) vRealize Operations (vROps) contiene una vulnerabilidad de control de acceso roto. VMware ha evaluado la gravedad de este problema en el rango de gravedad moderada con una puntuación base CVSSv3 máxima de 4,4.

08 Aug 2023, 14:22

Type Values Removed Values Added
CWE CWE-668 NVD-CWE-Other

21 Dec 2022, 17:20

Type Values Removed Values Added
CWE CWE-668
CPE cpe:2.3:a:vmware:vrealize_operations:8.10.0:*:*:*:*:*:*:*
cpe:2.3:a:vmware:vrealize_operations:*:*:*:*:*:*:*:*
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 4.9
References (MISC) https://www.vmware.com/security/advisories/VMSA-2022-0034.html - (MISC) https://www.vmware.com/security/advisories/VMSA-2022-0034.html - Patch, Vendor Advisory

16 Dec 2022, 17:11

Type Values Removed Values Added
New CVE

Information

Published : 2022-12-16 16:15

Updated : 2025-04-18 14:15


NVD link : CVE-2022-31708

Mitre link : CVE-2022-31708

CVE.ORG link : CVE-2022-31708


JSON object : View

Products Affected

vmware

  • vrealize_operations
CWE
NVD-CWE-Other CWE-284

Improper Access Control