VMware Aria Operations是美国威睿(VMware)公司的一个统一的、人工智能驱动的自动驾驶 IT 运营管理平台,适用于私有云、混合云和多云环境。 VMware Aria Operations存在安全漏洞,该漏洞源于可以向配置文件中插入恶意命令,以实现从本地管理员到root用户的权限提升。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| VMware | VMware Aria Operations | 8.x ~ 8.18.2 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2024-38830 | 7.8 HIGH | Local privilege escalation vulnerability |
| CVE-2024-38832 | 7.1 HIGH | Stored cross-site scripting vulnerability (CVE-2024-38832) |
| CVE-2024-38833 | 6.8 MEDIUM | Stored cross-site scripting vulnerability (CVE-2024-38833) |
| CVE-2024-38834 | 6.5 MEDIUM | Stored cross-site scripting vulnerability (CVE-2024-38834) |
No comments yet