CVE-2024-22272

VMware Cloud Director contains an Improper Privilege Management vulnerability. An authenticated tenant administrator for a given organization within VMware Cloud Director may be able to accidentally disable their organization leading to a Denial of Service for active sessions within their own organization's scope.
Configurations

No configuration.

History

02 Dec 2024, 18:15

Type Values Removed Values Added
CWE CWE-862

21 Nov 2024, 08:55

Type Values Removed Values Added
References () https://support.broadcom.com/web/ecx/support-content-notification/-/external/content/SecurityAdvisories/0/24371 - () https://support.broadcom.com/web/ecx/support-content-notification/-/external/content/SecurityAdvisories/0/24371 -
Summary
  • (es) VMware Cloud Director contiene una vulnerabilidad de gestión de privilegios incorrecta. Un administrador de inquilinos autenticado para una organización determinada dentro de VMware Cloud Director puede deshabilitar accidentalmente su organización, lo que lleva a una denegación de servicio para sesiones activas dentro del alcance de su propia organización.

27 Jun 2024, 21:15

Type Values Removed Values Added
New CVE

Information

Published : 2024-06-27 21:15

Updated : 2024-12-02 18:15


NVD link : CVE-2024-22272

Mitre link : CVE-2024-22272

CVE.ORG link : CVE-2024-22272


JSON object : View

Products Affected

No product.

CWE
CWE-862

Missing Authorization