CVE-2024-38834
EUVD-2024-3770826.11.2024, 12:15
VMware Aria Operations contains a stored cross-site scripting vulnerability. A malicious actor with editing access to cloud provider might be able to inject malicious script leading to stored cross-site scripting in the product VMware Aria Operations.
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| vmware | aria_operations | 8.0 ≤ 𝑥 < 8.18.2 |
| vmware | cloud_foundation | 4.0 ≤ 𝑥 ≤ 5.2 |
𝑥
= Vulnerable software versions