Known vulnerabilities in Cloud Foundation 3.10.2.2
Vendor:
Broadcom
Software:
Cloud Foundation
Version:
3.10.2.2
Software CPE:
cpe:2.3:a:broadcom:vmware_cloud_foundation:*:*:*:*:*:*:*:*
Website:
https://www.broadcom.com/
Total vulnerabilities:
6
Public exploits:
3
Known exploited (KEV):
2
Highest CVSSv4 Score:
9.4
Vulnerabilities by Severity
9.0.2.0 EP2
9.1.0.0
ESXi70U3w-24784741
ESXi80U3f-24784735
5.2.1.2
5.1.1
5.0
3.11
4.4
4.3.1.1
4.3.0
4.3.1
3.10.2.2
4.0.1
4.1
3.10.1.1
3.10.1
3.10.2
3.10.2.1
4.2.1
3.10.1.2
4.2
-
4.0
3.10
3.9.1
3.9
3.8
3.7.2
3.7.1
3.7
3.5.1
3.5
3.0.1.1
3.0.1
3.0
2.3.2.7
2.3.2.6
2.3.2.5
2.3.2.4
2.3.2.3
2.3.2.2
2.3.2
2.3.1
2.3.0
2.2.1.1
2.2.1
2.2.0.2
2.2.0.1
2.2
2.1.3c
2.1.3b
2.1.3a
2.1.3
Vulnerabilities (6)
| Vulnerability | CWE-ID | CSH Severity | Public Exploit | KEV | First fixed release | Published | Bulletins |
|---|---|---|---|---|---|---|---|
| #VU61935 - Incorrect Default Permissions CVE-2022-22960 |
CWE-276 | Low | - | 06.04.2022 |
SB2022040612 SB2022040613 SB2022040614 and 4 more |
||
| #VU61934 - Cross-Site Request Forgery (CSRF) CVE-2022-22959 |
CWE-352 | High | - | 06.04.2022 |
SB2022040612 SB2022040613 SB2022040614 and 4 more |
||
| #VU61933 - Deserialization of Untrusted Data CVE-2022-22958 |
CWE-502 | Low | - | 06.04.2022 |
SB2022040612 SB2022040613 SB2022040614 and 4 more |
||
| #VU61932 - Deserialization of Untrusted Data CVE-2022-22957 |
CWE-502 | Low | - | 06.04.2022 |
SB2022040612 SB2022040613 SB2022040614 and 4 more |
||
| #VU60191 - Cleartext Storage of Sensitive Information CVE-2022-22939 |
CWE-312 | Low | 4.3.1.1 | 31.01.2022 |
SB2022013117 |
||
| #VU58816 - Improper Control of Generation of Code ('Code Injection') CVE-2021-44228 |
CWE-94 | Critical | - | 10.12.2021 |
SB2021121003 SB2021121101 SB2021121201 and 338 more |