Tagged: vmware

CVE-2024-22245 and CVE-2024-22250

CVE-2024-22245 & 22250: VMware Vulnerabilities Demand Immediate Action

VMware has released an urgent security advisory regarding two critical vulnerabilities within its now-deprecated Enhanced Authentication Plug-in (EAP). If left unaddressed, threat actors could exploit these flaws (CVE-2024-22245 and CVE-2024-22250) to hijack user sessions and...

CVE-2021-44228 VMware

CVE-2021-44228 vulnerability affects multiple VMware products

Recently, VMware has issued a security notice to alert that many VMware products are affected by the Apache Log4j2 remote code execution vulnerability (CVE-2021-44228). Because some functions of Apache Log4j2 have recursive parsing functions,...