CVE-2022-31702
14.12.2022, 19:15
vRealize Network Insight (vRNI) contains a command injection vulnerability present in the vRNI REST API. A malicious actor with network access to the vRNI REST API can execute commands without authentication.
Vendor | Product | Version |
---|---|---|
vmware | vrealize_network_insight | 6.2.0 |
vmware | vrealize_network_insight | 6.3.0 |
vmware | vrealize_network_insight | 6.4.0 |
vmware | vrealize_network_insight | 6.5.1 |
vmware | vrealize_network_insight | 6.6.0 |
vmware | vrealize_network_insight | 6.7.0 |
𝑥
= Vulnerable software versions