VYPR

Cloud Director

by VMware

CVEs (4)

  • CVE-2020-3956HigMay 20, 2020
    risk 0.62cvss 8.8epss 0.21

    VMware Cloud Director 10.0.x before 10.0.0.2, 9.7.0.x before 9.7.0.5, 9.5.0.x before 9.5.0.6, and 9.1.0.x before 9.1.0.4 do not properly handle input leading to a code injection vulnerability. An authenticated actor may be able to send malicious traffic to VMware Cloud Director…

  • CVE-2022-22966HigApr 14, 2022
    risk 0.47cvss 7.2epss 0.06

    An authenticated, high privileged malicious actor with network access to the VMware Cloud Director tenant or provider may be able to exploit a remote code execution vulnerability to gain access to the server.

  • CVE-2024-22272MedJun 27, 2024
    risk 0.32cvss 4.9epss 0.00

    VMware Cloud Director contains an Improper Privilege Management vulnerability. An authenticated tenant administrator for a given organization within VMware Cloud Director may be able to accidentally disable their organization leading to a Denial of Service for active…

  • CVE-2024-22256MedMar 7, 2024
    risk 0.28cvss 4.3epss 0.00

    VMware Cloud Director contains a partial information disclosure vulnerability. A malicious actor can potentially gather information about organization names based on the behavior of the instance.