Skip to main content

Vendor/product archive

vmware / aria_automation CVEs

Beta · best-effort

3 CVEs tagged to vmware / aria_automation1 Critical, 2 High, 0 Medium, 0 Low, 0 Unrated.

CVE-2024-22280

Published Jul 11, 2024

VMware Aria Automation does not apply correct input validation which allows for SQL-injection in the product. An authenticated malicious user could enter specially crafted SQL que…

CVSS 8.5 · High
evidence mentions
2
Buzz score
17.5
Vendor/product tagsBeta · best-effort

CVE-2023-34063

Published Jan 16, 2024

Aria Automation contains a Missing Access Control vulnerability. An authenticated malicious actor may exploit this vulnerability leading to unauthorized access to remote organ…

CVSS 9.9 · Critical
evidence mentions
7
Buzz score
35.3
Vendor/product tagsBeta · best-effort
Showing 1-3 of 3 CVEsPage 1 of 1