VMware Hyperic Server 5.8.6: Remote UA insecure deserialization
CVE-2022-38650 Published on November 12, 2022

A remote unauthenticated insecure deserialization vulnerability exists in VMware Hyperic Server 5.8.6. Exploitation of this vulnerability enables a malicious party to run arbitrary code or malware within Hyperic Server and the host operating system with the privileges of the Hyperic server process. NOTE: This vulnerability only affects products that are no longer supported by the maintainer.

NVD


Products Associated with CVE-2022-38650

You can be notified by email with stack.watch whenever vulnerabilities like CVE-2022-38650 are published in VMware Hyperic Server:

 

Exploit Probability

EPSS
0.85%
Percentile
74.50%

EPSS (Exploit Prediction Scoring System) scores estimate the probability that a vulnerability will be exploited in the wild within the next 30 days. The percentile shows you how this score compares to all other vulnerabilities.