Known vulnerabilities in VMware Tanzu Operations Manager 2.10.1 - page 2

Vendor: Broadcom
Version: 2.10.1
Software CPE: cpe:2.3:a:broadcom:vmware_tanzu_operations_manager:*:*:*:*:*:*:*:*
Total vulnerabilities: 32
Public exploits: 6
Known exploited (KEV): 3
Highest CVSSv4 Score: 9.3

Vulnerabilities by Severity

Severity distribution of vulnerabilities affecting VMware Tanzu Operations Manager version 2.10.1 VMware Tanzu Operations Manager 2.10.1 is affected by 32 vulnerabilities: 3 critical, 6 high, 17 medium, 6 low Critical High Medium Low

Vulnerabilities (32)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU61756 - Improper Control of Generation of Code ('Code Injection')
CVE-2022-22965
CWE-94 Critical
Public exploit available
Exploited
2.8.20, 2.9.35, 2.10.35 31.03.2022 SB2022033109
SB2022040109
SB2022040110
and 78 more
#VU58816 - Improper Control of Generation of Code ('Code Injection')
CVE-2021-44228
CWE-94 Critical
Public exploit available
Exploited
2.10.23 10.12.2021 SB2021121003
SB2021121101
SB2021121201
and 338 more
#VU47741 - Heap-based Buffer Overflow
CVE-2020-15999
CWE-122 Critical
Public exploit available
Exploited
2.7.25, 2.9.13, 2.10.3 20.10.2020 SB2020102038
SB2020102039
SB2020102040
and 43 more
#VU47546 - Improper Access Control
CVE-2020-12352
CWE-284 Medium
Public exploit available
No
2.7.25, 2.9.12, 2.10.3 13.10.2020 SB2020101322
SB2020101803
SB2020101804
and 35 more
#VU47545 - Improper input validation
CVE-2020-12351
CWE-20 Medium
Public exploit available
No
2.7.25, 2.9.12, 2.10.3 13.10.2020 SB2020101322
SB2020101803
SB2020101804
and 32 more
#VU48592 - Improper Neutralization of CRLF Sequences ('CRLF Injection')
CVE-2020-26116
CWE-93 Medium
No
No
2.7.25, 2.9.12, 2.10.3 27.09.2020 SB2020092711
SB2020112308
SB2020112309
and 34 more
#VU30281 - Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')
CVE-2019-20807
CWE-78 Low
No
No
2.7.25, 2.9.12, 2.10.3 28.05.2020 SB2020052815
SB2020061148
SB2020110918
and 9 more
#VU21793 - Buffer over-read
CVE-2019-17595
CWE-126 Medium
No
No
2.9.41, 2.10.44, 2.10.59, 3.0.11 15.10.2019 SB2019101515
SB2019112401
SB2019112402
and 23 more
#VU21792 - Heap-based Buffer Overflow
CVE-2019-17594
CWE-122 High
No
No
2.9.41, 2.10.44, 2.10.59, 3.0.11 15.10.2019 SB2019101515
SB2019112401
SB2019112402
and 23 more
#VU15935 - NULL Pointer Dereference
CVE-2018-19211
CWE-476 Low
No
No
2.9.41, 2.10.44 17.11.2018 SB2018111702
SB2018121002
SB2018121009
and 2 more
#VU12202 - Stack-based buffer overflow
CVE-2017-16879
CWE-121 High
No
No
2.9.41, 2.10.44 26.04.2018 SB2018041708
SB2017120121
SB2018012328
and 2 more
#VU31389 - Exposure of sensitive information to an unauthorized actor
CVE-2017-17087
CWE-200 Low
No
No
2.7.25, 2.9.12, 2.10.3 01.12.2017 SB2017120122
SB2020112312
SB2021111514
and 10 more


Showing elements 21 - 40 out of 32