Note:
This project will be discontinued after December 13, 2021. [more]
Product:
Aria_automation
(Vmware)Repositories |
Unknown: This might be proprietary software. |
#Vulnerabilities | 2 |
Date | Id | Summary | Products | Score | Patch | Annotated |
---|---|---|---|---|---|---|
2024-07-11 | CVE-2024-22280 | VMware Aria Automation does not apply correct input validation which allows for SQL-injection in the product. An authenticated malicious user could enter specially crafted SQL queries and perform unauthorised read/write operations in the database. | Aria_automation, Cloud_foundation | 8.1 | ||
2024-01-16 | CVE-2023-34063 | Aria Automation contains a Missing Access Control vulnerability. An authenticated malicious actor may exploit this vulnerability leading to unauthorized access to remote organizations and workflows. | Aria_automation, Cloud_foundation | 8.3 |