CVE-2016-7462
29.12.2016, 09:59
The Suite REST API in VMware vRealize Operations (aka vROps) 6.x before 6.4.0 allows remote authenticated users to write arbitrary content to files or rename files via a crafted DiskFileItem in a relay-request payload that is mishandled during deserialization.Enginsight
Vendor | Product | Version |
---|---|---|
vmware | vrealize_operations | 6.0.0 |
vmware | vrealize_operations | 6.1.0 |
vmware | vrealize_operations | 6.2.0a:a |
vmware | vrealize_operations | 6.2.1 |
vmware | vrealize_operations | 6.3.0 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration
References