CVE-2024-22280
VMware Aria Automation does not apply correct input validation which allows for SQL-injection in the product. An authen
VMware Aria Automation does not apply correct input validation which allows for SQL-injection in the product. An authenticated malicious user could enter specially crafted SQL queries and perform unauthorised read/write operations in the database.
HIGH · CVSS 8.5
EPSS 0.01466
Schedule remediation
- CVSS base score ≥ 7.0
Sigma rules0
YARA rules0