VMware vRealize Automation 7.2

CPE Details

VMware vRealize Automation 7.2
7.2
2018-12-18
14h48 +00:00
2018-12-18
14h48 +00:00
Alerte pour un CPE
Stay informed of any changes for a specific CPE.
Notifications manage

CPE Name: cpe:2.3:a:vmware:vrealize_automation:7.2:*:*:*:*:*:*:*

Informations

Vendor

vmware

Product

vrealize_automation

Version

7.2

Related CVE

Open and find in CVE List

CVE ID Published Description Score Severity
CVE-2018-6958 2018-04-13 13h00 +00:00 VMware vRealize Automation (vRA) prior to 7.3.1 contains a vulnerability that may allow for a DOM-based cross-site scripting (XSS) attack. Exploitation of this issue may lead to the compromise of the vRA user's workstation.
6.1
Medium
CVE-2018-6959 2018-04-13 13h00 +00:00 VMware vRealize Automation (vRA) prior to 7.4.0 contains a vulnerability in the handling of session IDs. Exploitation of this issue may lead to the hijacking of a valid vRA user's session.
9.8
Critical
CVE-2016-5334 2016-12-29 08h02 +00:00 VMware Identity Manager 2.x before 2.7.1 and vRealize Automation 7.x before 7.2.0 allow remote attackers to read /SAAS/WEB-INF and /SAAS/META-INF files via unspecified vectors.
5.3
Medium