CVE-2021-22023

Publication date

2021-08-30 17:53:35

Family

vmware

State

PUBLISHED

Description

The vRealize Operations Manager API (8.x prior to 8.5) has insecure object reference vulnerability. A malicious actor with administrative access to vRealize Operations Manager API may be able to modify other users information leading to an account takeover.