

Multiple IBM Products Vulnerabilities
July 8, 2024
Multiple WordPress Plugins Vulnerabilities
July 8, 2024
Multiple IBM Products Vulnerabilities
July 8, 2024
Multiple WordPress Plugins Vulnerabilities
July 8, 2024Severity
Medium
Analysis Summary
CVE-2024-22277
VMware Cloud Director Availability is vulnerable to cross-site scripting, caused by improper validation of user-supplied input. A remote authenticated attacker could exploit this vulnerability to inject malicious script into a Web page which would be executed> in a victims Web browser within the security context of the hosting Web site, once the page is viewed. An attacker could use this vulnerability to steal the victims cookie-based authentication credentials.
Impact
- Cross-Site Scripting
Indicators of Compromise
CVE
- CVE-2024-22277
Affected Vendors
Affected Products
- VMware Cloud Director Availability
Remediation
Refer to VMware Security Advisory for patch, upgrade or suggested workaround information.