CVE-2025-22218

Published Jan 30, 2025

Last updated 23 days ago

Overview

Description
VMware Aria Operations for Logs contains an information disclosure vulnerability. A malicious actor with View Only Admin permissions may be able to read the credentials of a VMware product integrated with VMware Aria Operations for Logs
Source
security@vmware.com
NVD status
Received

Risk scores

CVSS 3.1

Type
Secondary
Base score
8.5
Impact score
6
Exploitability score
1.8
Vector string
CVSS:3.1/AV:N/AC:H/PR:L/UI:N/S:C/C:H/I:H/A:H
Severity
HIGH

Social media

Hype score
Not currently trending
  1. Broadcom releases security updates for VMware Aria flaws, including CVE-2025-22218. Apply patches promptly. Read more: https://t.co/7JIqBFM3wV

    @threatlight

    8 Feb 2025

    24 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  2. ”VMware製品の資格情報を読み取ることができる情報漏洩の脆弱性「CVE-2025-22218」や、管理者ユーザーとして任意の操作を実行できるクロスサイトスクリプティング(XSS)の脆弱性「CVE-2025-22219」が判明” https://t.co/zND4gKUC6U

    @NSaito_tokyo

    3 Feb 2025

    12 Impressions

    0 Retweets

    1 Like

    0 Bookmarks

    0 Replies

    0 Quotes

  3. Broadcom ha lanzado parches para cinco vulnerabilidades en VMware Aria Operations y Aria Operations for Logs, que podrían facilitar el robo de credenciales y el abuso de privilegios administrativos. La más crítica de estas fallas, CVE-2025-22218, con una puntuación CVSS de 8.5,…

    @citarafy

    31 Jan 2025

    52 Impressions

    0 Retweets

    1 Like

    1 Bookmark

    0 Replies

    0 Quotes

  4. Kritieke informatie lek in vmware aria operations voor logs: cve-2025-22218 https://t.co/T7M3QuHHiN #VMware kwetsbaarheid #CVE-2025-22218 #informatielek #Aria Operations for Logs #beveiligingsupdate #Trending #Tech #Nieuws

    @TrendingNewsBot

    31 Jan 2025

    1 Impression

    0 Retweets

    0 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  5. 🚨 Broadcom has released updates to fix five vulnerabilities in VMware Aria Operations & Aria Operations for Logs. The most critical (CVE-2025-22218, CVSS 8.5) could allow attackers to access sensitive credentials. 🔹 Update Now! #CyberSecurity #VMware https://t.co/HjXnaHO

    @syberintel

    31 Jan 2025

    100 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  6. VMware Aria Operations for Logs および VMware Aria Operations に影響を与える5つの脆弱性 (CVE-2025-22218~CVE-2025-22222)について View Only Admin権限で、VMware Aria Operations for Logs に統合されている他のVMware製品の認証情報を読み取る可能性など 修正版 8.18.3 へ速やかな適用が推奨 https://t.co/DbtNHYS2WW

    @t_nihonmatsu

    31 Jan 2025

    252 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  7. CVE-2025-22218 VMware Aria Operations for Logs contains an information disclosure vulnerability. A malicious actor with View Only Admin permissions may be able to read the credentia… https://t.co/PQpiI80Ula

    @CVEnew

    30 Jan 2025

    366 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  8. [CVE-2025-22218: HIGH] A security flaw in VMware Aria Operations for Logs allows a malicious user with View Only Admin access to potentially access credentials of integrated VMware products.#cybersecurity,#vulnerability https://t.co/paFO7nnThi https://t.co/8yu4pBKk9P

    @CveFindCom

    30 Jan 2025

    84 Impressions

    0 Retweets

    1 Like

    0 Bookmarks

    0 Replies

    0 Quotes