Home
MEDIUM: 4.9 CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:N/A:NDefault status
unaffected
8.18.x (commercial) before 8.18.5
affected
Default status
unaffected
5.x (commercial) before 8.18.5
affected
4.x (commercial) before 8.18.5
affected
Default status
unaffected
5.x (commercial) before 8.18.5
affected
4.x (commercial) before 8.18.5
affected
Default status
unaffected
3.x (commercial) before 8.18.5
affected
2.x (commercial) before 8.18.5
affected
Description
VMware Aria Operations contains an information disclosure vulnerability. A malicious actor with non-administrative privileges in Aria Operations may exploit this vulnerability to disclose credentials of other users of Aria Operations.
Problem types
Product status
8.18.x (commercial) before 8.18.5
5.x (commercial) before 8.18.5
4.x (commercial) before 8.18.5
5.x (commercial) before 8.18.5
4.x (commercial) before 8.18.5
3.x (commercial) before 8.18.5
2.x (commercial) before 8.18.5
References
support.broadcom.com/...VE-2025-41245--CVE-2025-41246-/36149