Known Vulnerabilities for Vrealize Automation by Vmware
Listed below are 10 of the newest known vulnerabilities associated with "Vrealize Automation" by "Vmware".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2023-20855 json | VMware vRealize Orchestrator contains an XML External Entity (XXE) vulnerability. A malicious actor, with non-administrative ... | 8.8 - HIGH | 2023-02-22 | 2023-03-03 |
| CVE-2022-22972 json | VMware Workspace ONE Access, Identity Manager and vRealize Automation contain an authentication bypass vulnerability affectin... | 9.8 - CRITICAL | 2022-05-20 | 2023-08-08 |
| CVE-2022-22961 json | VMware Workspace ONE Access, Identity Manager and vRealize Automation contain an information disclosure vulnerability due to ... | 5.3 - MEDIUM | 2022-04-13 | 2023-08-08 |
| CVE-2022-22960 json | VMware Workspace ONE Access, Identity Manager and vRealize Automation contain a privilege escalation vulnerability due to imp... | 7.8 - HIGH | 2022-04-13 | 2023-08-08 |
| CVE-2022-22959 json | VMware Workspace ONE Access, Identity Manager and vRealize Automation contain a cross site request forgery vulnerability. A m... | 4.3 - MEDIUM | 2022-04-13 | 2022-04-21 |
| CVE-2022-22958 json | VMware Workspace ONE Access, Identity Manager and vRealize Automation contain two remote code execution vulnerabilities (CVE-... | 7.2 - HIGH | 2022-04-13 | 2023-08-08 |
| CVE-2022-22957 json | VMware Workspace ONE Access, Identity Manager and vRealize Automation contain two remote code execution vulnerabilities (CVE-... | 7.2 - HIGH | 2022-04-13 | 2023-04-19 |
| CVE-2022-22956 json | VMware Workspace ONE Access has two authentication bypass vulnerabilities (CVE-2022-22955 & CVE-2022-22956) in the OAuth2 ACS... | 9.8 - CRITICAL | 2022-04-13 | 2023-04-19 |
| CVE-2022-22955 json | VMware Workspace ONE Access has two authentication bypass vulnerabilities (CVE-2022-22955 & CVE-2022-22956) in the OAuth2 ACS... | 9.8 - CRITICAL | 2022-04-13 | 2023-08-08 |
| CVE-2022-22954 json | VMware Workspace ONE Access and Identity Manager contain a remote code execution vulnerability due to server-side template in... | 9.8 - CRITICAL | 2022-04-11 | 2022-09-09 |
Known Affected Configurations (CPE V2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Application | Vmware | Vrealize Automation | 7.6 | |||
| Application | Vmware | Vrealize Automation | 7.5 | |||
| Application | Vmware | Vrealize Automation | 7.4 | |||
| Application | Vmware | Vrealize Automation | 7.3.1 | |||
| Application | Vmware | Vrealize Automation | 7.3 | |||
| Application | Vmware | Vrealize Automation | 7.2 | |||
| Application | Vmware | Vrealize Automation | 7.1 | |||
| Application | Vmware | Vrealize Automation | 7.0.1 | |||
| Application | Vmware | Vrealize Automation | 7.0 | |||
| Application | Vmware | Vrealize Automation | 6.2.5 | |||
| Application | Vmware | Vrealize Automation | 6.2.4 | |||
| Application | Vmware | Vrealize Automation | 6.2.3 | |||
| Application | Vmware | Vrealize Automation | 6.2.2 | |||
| Application | Vmware | Vrealize Automation | 6.2.1 | |||
| Application | Vmware | Vrealize Automation | 6.2.0 | |||
| Application | Vmware | Vrealize Automation | 6.1.1 | |||
| Application | Vmware | Vrealize Automation | 6.1.0 | |||
| Application | Vmware | Vrealize Automation | 6.0.1.2 | |||
| Application | Vmware | Vrealize Automation | 6.0.1.1 | |||
| Application | Vmware | Vrealize Automation | 6.0.1 |