Known vulnerabilities in VMware Tanzu Operations Manager - page 20

Vendor: Broadcom
Software CPE: cpe:2.3:a:broadcom:vmware_tanzu_operations_manager:*:*:*:*:*:*:*:*
Total vulnerabilities: 426
Public exploits: 15
Known exploited (KEV): 5
Highest CVSSv4 Score: 9.3

Breakdown by Severity Chart

Severity distribution of vulnerabilities affecting VMware Tanzu Operations Manager VMware Tanzu Operations Manager is affected by 426 known vulnerabilities: 4 critical, 109 high, 164 medium, 149 low Critical High Medium Low

Vulnerabilities (426)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU63332 - Reachable Assertion
CVE-2022-0865
CWE-617 Medium
No
No
2.7.25, 2.8.16, 2.9.12, 2.10.3 17.05.2022 SB2022051726
SB2022051729
SB2022072612
and 25 more
#VU63329 - Out-of-bounds write
CVE-2022-0891
CWE-787 Medium
No
No
2.7.25, 2.8.16, 2.9.12, 2.10.3 17.05.2022 SB2022051726
SB2022051729
SB2022080141
and 24 more
#VU63328 - NULL Pointer Dereference
CVE-2022-0562
CWE-476 Medium
No
No
2.7.25, 2.8.16, 2.9.12, 2.10.3 17.05.2022 SB2022051726
SB2022051729
SB2022072612
and 24 more
#VU62768 - Uncontrolled Memory Allocation
CVE-2022-1473
CWE-789 Low
No
No
2.9.39, 2.10.40 03.05.2022 SB2022050315
SB2022050436
SB2022050532
and 18 more
#VU62765 - Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')
CVE-2022-1292
CWE-78 Medium
Available
No
2.9.39, 2.10.40 03.05.2022 SB2022050315
SB2022050436
SB2022050503
and 141 more
#VU62378 - Integer overflow
CVE-2021-31873
CWE-190 High
No
No
2.9.38, 2.10.39 19.04.2022 SB2021043022
SB2022041906
SB2022041922
and 2 more
#VU62377 - Integer overflow
CVE-2021-31872
CWE-190 High
No
No
2.9.38, 2.10.39 19.04.2022 SB2021043022
SB2022041906
SB2022041922
and 2 more
#VU62376 - Integer overflow
CVE-2021-31871
CWE-190 Medium
No
No
2.9.38, 2.10.39 19.04.2022 SB2021043022
SB2022041906
SB2022041922
and 2 more
#VU62375 - Integer overflow
CVE-2021-31870
CWE-190 High
No
No
2.9.38, 2.10.39 19.04.2022 SB2021043022
SB2022041906
SB2022041922
and 2 more
#VU62316 - Improper input validation
CVE-2020-36309
CWE-20 Medium
No
No
2.7.25, 2.8.16, 2.9.12, 2.10.3 14.04.2022 SB2021040629
SB2022041422
SB2022042817
and 2 more
#VU62002 - Improper input validation
CVE-2022-1271
CWE-20 High
No
No
2.9.38, 2.10.39 08.04.2022 SB2022040803
SB2022040804
SB2022040822
and 134 more
#VU61672 - Heap-based Buffer Overflow
CVE-2022-27666
CWE-122 Low
Available
No
2.9.34, 2.10.34 29.03.2022 SB2022032901
SB2022032902
SB2022033118
and 66 more
#VU61671 - Memory corruption
CVE-2018-25032
CWE-119 Medium
No
No
2.9.41, 2.10.44 28.03.2022 SB2022032844
SB2022032845
SB2022033018
and 192 more
#VU51741 - Improper Handling of Exceptional Conditions
CVE-2021-28831
CWE-755 Medium
No
No
2.9.39, 2.10.40, 2.10.61 26.03.2021 SB2021032622
SB2021032626
SB2021032627
and 25 more
#VU46107 - Inconsistent Interpretation of HTTP Requests ('HTTP Request Smuggling')
CVE-2020-11724
CWE-444 Medium
No
No
2.7.25, 2.8.16, 2.9.12, 2.10.3 27.08.2020 SB2020041208
SB2020082719
SB2022041422
and 3 more
#VU27952 - Out-of-bounds read
CVE-2017-7960
CWE-125 Medium
No
No
2.9.39, 2.10.40 15.05.2020 SB2017041914
SB2019072139
SB2022042623
and 3 more
#VU27951 - Resource exhaustion
CVE-2020-12825
CWE-400 Medium
No
No
2.9.39, 2.10.40 15.05.2020 SB2020051519
SB2020093066
SB2022042623
and 14 more
#VU19192 - Memory corruption
CVE-2017-8834
CWE-119 Medium
No
No
2.9.39, 2.10.40 16.07.2019 SB2020060802
SB2019072136
SB2022042623
and 2 more
#VU19191 - Resource Management Errors
CVE-2017-8871
CWE-399 Medium
Available
No
2.9.39, 2.10.40 16.07.2019 SB2020060802
SB2019072137
SB2022042623
and 2 more
#VU18290 - Improper input validation
CVE-2018-1000654
CWE-20 Low
No
No
2.9.38, 2.10.39 17.04.2019 SB2018082017
SB2019060302
SB2019060502
and 6 more


Showing elements 381 - 400 out of 426