VMware vRealize Operations contains an information disclosure vulnerability. A low-privileged malicious actor with network access can access log files that lead to information disclosure.
The product writes sensitive information to a log file.
The product exposes sensitive information to an actor that is not explicitly authorized to have access to that information.
Link | Tags |
---|---|
https://www.vmware.com/security/advisories/VMSA-2022-0022.html | patch vendor advisory |