Summary: [/subscribe_to_unlock_form]
Summary: [emaillocker id="1283"]
Recently patched critical vRealize Log Insight vulnerabilities by VMware has been exploited by cyber attacker to gain remote execution on unpatched appliances. vRealize Log Insight also known as VMware Aria Operations for Logs is a log analysis and management tool that helps analyze terabytes of infrastructure and application logs in VMware environments. The first vulnerability tracked as CVE-2022-31703 is a directory traversal vulnerability that can exploit to inject files in the OS of impacted appliances to achieve RCE. The second vulnerability tracked as CVE-2022-31704 is a broken access control vulnerability that can also be abused to gain RCE on vulnerable systems by injecting malicious crafted files. VMware also fixed a series of security flaws (CVE-2022-31710) and (CVE-2022-31711) that can be exploited to access sensitive session and application info in its latest software release.
Recommendation:
We strongly recommend upgrading to the Latest Version of vRealize Log Insight (version 8.10)
References:
The following reports contain further technical details:
[/emaillocker]