VMware Aria Operations contains an information disclosure vulnerability. A malicious user with non-administrative privileges may exploit this vulnerability to retrieve credentials for an outbound plugin if a valid service credential ID is known.
2025-01-30T16:15:31.367
2025-05-14T16:47:55.030
Analyzed
CVSSv3.1: 7.7 (HIGH)
Type | Vendor | Product | Version/Range | Vulnerable? |
---|---|---|---|---|
Application | vmware | aria_operations | < 8.18.3 | Yes |
Application | vmware | cloud_foundation | ≤ 5.2 | Yes |