Security Advisory

CVE-2021-22036

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2021-10-13 15:52:00
Last updated 2024-08-03 18:30:23
Assigner vmware
State PUBLISHED

Description

VMware vRealize Orchestrator ((8.x prior to 8.6) contains an open redirect vulnerability due to improper path handling. A malicious actor may be able to redirect victim to an attacker controlled domain due to improper path handling in vRealize Orchestrator leading to sensitive information disclosure.