CVE-2021-22036
13.10.2021, 16:15
VMware vRealize Orchestrator ((8.x prior to 8.6) contains an open redirect vulnerability due to improper path handling. A malicious actor may be able to redirect victim to an attacker controlled domain due to improper path handling in vRealize Orchestrator leading to sensitive information disclosure.Enginsight
| Vendor | Product | Version |
|---|---|---|
| vmware | vrealize_automation | 8.0 ≤ 𝑥 < 8.6 |
| vmware | vrealize_orchestrator | 8.0 ≤ 𝑥 < 8.6 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration