High Threat Security Alert (A23-01-15): Multiple Vulnerabilities in VMware vRealize Log Insight
26 January 2023
VMware has published a security advisory to address multiple vulnerabilities in VMware products. The list of the security updates can be found at: https://www.vmware.com/security/advisories/VMSA-2023-0001.html
Reports indicate that the vulnerabilities (CVE-2022-31704 and CVE-2022-31706) are at high risk of exploitation. System administrators are advised to take immediate actions to patch your affected systems to mitigate the elevated risk of cyber attacks.
VMware vRealize Log Insight version 8.x
Depending on the vulnerabilities being exploited, a successful exploitation of the vulnerabilities could lead to remote code execution, denial of service or information disclosure on the affected system.
Patches for affected products are available. System administrators of affected systems should follow the recommendations provided by the product vendor and take immediate actions to mitigate the risk.