vmware vrealize-log-insight CVE-2018-6980 is a vulnerability in VMware Vrealize Log Insight
Published on November 13, 2018

VMware vRealize Log Insight (4.7.x before 4.7.1 and 4.6.x before 4.6.2) contains a vulnerability due to improper authorization in the user registration method. Successful exploitation of this issue may allow Admin users with view only permission to perform certain administrative functions which they are not allowed to perform.

NVD


Products Associated with CVE-2018-6980

Want to know whenever a new CVE is published for VMware Vrealize Log Insight? stack.watch will email you.

 

Affected Versions

VMware vRealize Log Insight Version VVMware vRealize Log Insight (4.7.x before 4.7.1 and 4.6.x before 4.6.2) is affected by CVE-2018-6980

Exploit Probability

EPSS
0.30%
Percentile
52.95%

EPSS (Exploit Prediction Scoring System) scores estimate the probability that a vulnerability will be exploited in the wild within the next 30 days. The percentile shows you how this score compares to all other vulnerabilities.