Total vulnerabilities in the database
VMware Aria Operations for Logs contains a deserialization vulnerability. A malicious actor with non-administrative access to the local system can trigger the deserialization of data which could result in authentication bypass.
Software | From | Fixed in |
---|---|---|
vmware / aria_operations_for_logs | 5.0 | 5.0.x |
vmware / aria_operations_for_logs | 4.0 | 4.0.x |
vmware / aria_operations_for_logs | 8.10.2 | 8.10.2.x |
vmware / aria_operations_for_logs | 8.12 | 8.12.x |