CVE-2025-22217

Publication date

2025-01-28 18:33:36

Family

vmware

State

PUBLISHED

Description

Avi Load Balancer contains an unauthenticated blind SQL Injection vulnerability which was privately reported to VMware. Patches are available to remediate this vulnerability in affected VMware products.  A malicious user with network access may be able to use specially crafted SQL queries to gain database access.