Lucene search

K
cvelistVmwareCVELIST:CVE-2022-31706
HistoryJan 25, 2023 - 12:00 a.m.

CVE-2022-31706

2023-01-2500:00:00
vmware
www.cve.org
10
vrealize log insight
directory traversal
vulnerability
unauthenticated
remote code execution

AI Score

9.9

Confidence

High

EPSS

0.009

Percentile

83.1%

The vRealize Log Insight contains a Directory Traversal Vulnerability. An unauthenticated, malicious actor can inject files into the operating system of an impacted appliance which can result in remote code execution.

CNA Affected

[
  {
    "vendor": "n/a",
    "product": "vRealize Log Insight (vRLI)",
    "versions": [
      {
        "version": "vRealize Log Insight 8.10.1 and prior",
        "status": "affected"
      }
    ]
  }
]

AI Score

9.9

Confidence

High

EPSS

0.009

Percentile

83.1%