CVE-2021-22036
13.10.2021, 16:15
VMware vRealize Orchestrator ((8.x prior to 8.6) contains an open redirect vulnerability due to improper path handling. A malicious actor may be able to redirect victim to an attacker controlled domain due to improper path handling in vRealize Orchestrator leading to sensitive information disclosure.Enginsight
Vendor | Product | Version |
---|---|---|
vmware | vrealize_automation | 8.0 ≤ 𝑥 < 8.6 |
vmware | vrealize_orchestrator | 8.0 ≤ 𝑥 < 8.6 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration