VMware NSX contains a content spoofing vulnerability.
An unauthenticated malicious actor may be able to craft a URL and redirect a victim to an attacker controlled domain leading to sensitive information disclosure.
Metrics
Affected Vendors & Products
References
History
Wed, 09 Oct 2024 21:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
First Time appeared |
Vmware
Vmware cloud Foundation Vmware nsx Vmware nsx-t |
|
CPEs | cpe:2.3:a:vmware:cloud_foundation:*:*:*:*:*:*:*:* cpe:2.3:a:vmware:nsx-t:*:*:*:*:*:*:*:* cpe:2.3:a:vmware:nsx:*:*:*:*:*:*:*:* |
|
Vendors & Products |
Vmware
Vmware cloud Foundation Vmware nsx Vmware nsx-t |
|
Metrics |
ssvc
|
Wed, 09 Oct 2024 20:00:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Description | VMware NSX contains a content spoofing vulnerability. An unauthenticated malicious actor may be able to craft a URL and redirect a victim to an attacker controlled domain leading to sensitive information disclosure. | |
Weaknesses | CWE-79 | |
References |
| |
Metrics |
cvssV3_1
|
MITRE
Status: PUBLISHED
Assigner: vmware
Published: 2024-10-09T19:47:52.578Z
Updated: 2024-10-09T21:05:46.428Z
Reserved: 2024-06-19T22:31:57.187Z
Link: CVE-2024-38815
Vulnrichment
Updated: 2024-10-09T21:05:33.707Z
NVD
Status : Awaiting Analysis
Published: 2024-10-09T20:15:07.820
Modified: 2024-10-10T12:51:56.987
Link: CVE-2024-38815
Redhat
No data.