vmware vrealize-automation CVE-2021-22036 vulnerability in VMware Products
Published on October 13, 2021

VMware vRealize Orchestrator ((8.x prior to 8.6) contains an open redirect vulnerability due to improper path handling. A malicious actor may be able to redirect victim to an attacker controlled domain due to improper path handling in vRealize Orchestrator leading to sensitive information disclosure.

NVD


Products Associated with CVE-2021-22036

stack.watch emails you whenever new vulnerabilities are published in VMware Vrealize Automation or VMware Vrealize Orchestrator. Just hit a watch button to start following.

 
 

Exploit Probability

EPSS
0.58%
Percentile
68.53%

EPSS (Exploit Prediction Scoring System) scores estimate the probability that a vulnerability will be exploited in the wild within the next 30 days. The percentile shows you how this score compares to all other vulnerabilities.