Loading HuntDB...

GHSA-ffhg-6h3q-652p

GitHub Security Advisory

⚠ Unreviewed HIGH Has CVE

Advisory Details

An authenticated SQL injection vulnerability in VMware HCX was privately reported to VMware. A
malicious authenticated user with non-administrator privileges may be
able to enter specially crafted SQL queries and perform unauthorized
remote code execution on the HCX manager. 
Updates are available to remediate this vulnerability in affected VMware products.

Related CVEs

Key Information

GHSA ID
GHSA-ffhg-6h3q-652p
Published
October 16, 2024 6:31 PM
Last Modified
October 21, 2024 6:30 PM
CVSS Score
7.5 /10
Primary Ecosystem
Unknown
Primary Package
Unknown
GitHub Reviewed
✗ No

Dataset

Last updated: June 15, 2025 6:24 AM

Data from GitHub Advisory Database. This information is provided for research and educational purposes.