CVE-2025-22220
EUVD-2025-267630.01.2025, 16:15
VMware Aria Operations for Logs contains a privilege escalation vulnerability. A malicious actor with non-administrative privileges and network access to Aria Operations for Logs API may be able to perform certain operations in the context of an admin user.Enginsight
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| vmware | aria_operations_for_logs | 8.0 ≤ 𝑥 < 8.18.3 |
| vmware | cloud_foundation | 4.0 ≤ 𝑥 ≤ 5.2 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration