Vulnerabilities > Vmware > Vrealize LOG Insight > 4.3

DATE CVE VULNERABILITY TITLE RISK
2023-01-26 CVE-2022-31704 Unspecified vulnerability in VMWare Vrealize LOG Insight
The vRealize Log Insight contains a broken access control vulnerability.
network
low complexity
vmware
critical
9.8
2023-01-26 CVE-2022-31706 Path Traversal vulnerability in VMWare Vrealize LOG Insight
The vRealize Log Insight contains a Directory Traversal Vulnerability.
network
low complexity
vmware CWE-22
critical
9.8
2023-01-26 CVE-2022-31710 Deserialization of Untrusted Data vulnerability in VMWare Vrealize LOG Insight
vRealize Log Insight contains a deserialization vulnerability.
network
low complexity
vmware CWE-502
7.5
2023-01-26 CVE-2022-31711 Unspecified vulnerability in VMWare Vrealize LOG Insight
VMware vRealize Log Insight contains an Information Disclosure Vulnerability.
network
low complexity
vmware
5.3
2022-12-14 CVE-2022-31703 Path Traversal vulnerability in VMWare Vrealize LOG Insight
The vRealize Log Insight contains a Directory Traversal Vulnerability.
network
low complexity
vmware CWE-22
7.5
2022-07-12 CVE-2022-31654 Cross-site Scripting vulnerability in VMWare Vrealize LOG Insight
VMware vRealize Log Insight in versions prior to 8.8.2 contain a stored cross-site scripting vulnerability due to improper input sanitization in configurations.
network
vmware CWE-79
3.5
2022-07-12 CVE-2022-31655 Cross-site Scripting vulnerability in VMWare Vrealize LOG Insight
VMware vRealize Log Insight in versions prior to 8.8.2 contain a stored cross-site scripting vulnerability due to improper input sanitization in alerts.
network
vmware CWE-79
3.5
2021-08-30 CVE-2021-22021 Cross-site Scripting vulnerability in VMWare Cloud Foundation and Vrealize LOG Insight
VMware vRealize Log Insight (8.x prior to 8.4) contains a Cross Site Scripting (XSS) vulnerability due to improper user input validation.
network
vmware CWE-79
3.5
2020-04-15 CVE-2020-3954 Open Redirect vulnerability in VMWare Vrealize LOG Insight
Open Redirect vulnerability exists in VMware vRealize Log Insight prior to 8.1.0 due to improper Input validation.
network
vmware CWE-601
5.8
2020-04-15 CVE-2020-3953 Cross-site Scripting vulnerability in VMWare Vrealize LOG Insight
Cross Site Scripting (XSS) vulnerability exists in VMware vRealize Log Insight prior to 8.1.0 due to improper Input validation.
network
vmware CWE-79
3.5