CVE-2024-22276
Published: Jun 27, 2024
Modified: Oct 31, 2024
CVSS v3.1
5.3
Description
VMware Cloud Director Object Storage Extension contains an Insertion of Sensitive Information vulnerability. A malicious actor with adjacent access to web/proxy server logging may be able to obtain sensitive information from URLs that are logged.
| Vendor | Product | Versions |
|---|---|---|
N/A | VMware Cloud Director Object Storage Extension | affected VMware Cloud Director Object Storage Extension 3.0, VMware Cloud Director Object Storage Extension 2.x |
CVSS v3.1 Details
CVSS v3.1 Vector
CVSS:3.1/AV:A/AC:H/PR:N/UI:N/S:U/C:H/I:N/A:N
Attack Vector
Attack Complexity
Privileges Required
User Interaction
Scope
Confidentiality
Integrity
Availability
Security Training
Train your team to recognize and prevent security threats with our comprehensive security awareness program.
Start TrainingVulnerability Scanning
Discover vulnerabilities in your applications and infrastructure before attackers do.
Scan Now