S4E just found a high-severity finding from top 10 tcp port service scan
PlatformPlansPartners
Resources
ToolsBlogDocs
Sign Up →
medium·Product Based Web Vulnerabilities·Updated Oct 14, 2025

CVE-2022-31711 Scanner

CVE-2022-31711 Scanner - Information Disclosure vulnerability in VMware vRealize Log Insight

Est. Time~10 seconds
Scan TypeSingle Scan
Targetsurl
CostFree
2.2k
Times Used
continuous scan runs
5.9k
Continuously Checked
assets under CS
0
Vulnerabilities Found
confirmed findings
References
CVECVE-2022-31711
5.3
CVSSmedium
Exploitable remotely over the internet · no authentication required.

VMware vRealize Log Insight contains an Information Disclosure Vulnerability. A malicious actor can remotely collect sensitive session and application information without authentication.

Attack Vector
Network
Privileges Req.
None
User Interaction
None
Affected
vRealize Log Insight (vRLI)by n/a
vRealize Log Insight 8.10.1 and prior
Updated Aug 22, 2026View on NVD →
Detail

VMware vRealize Log Insight is a log management software used extensively within enterprise environments. It helps IT departments aggregate logs and provides robust analytics capabilities to understand system events better. Organizations use this product to streamline their log analysis, ensuring smooth operation of software services and systems. The software is essential for IT infrastructure to conduct monitoring, compliance auditing, and troubleshooting duties. VMware vRealize Log Insight is integrated into a variety of IT environments, offering flexibility to different enterprise needs. Security and operations teams benefit from its real-time monitoring and alerting features.

The vulnerability in VMware vRealize Log Insight pertains to information disclosure without the need for authentication. Attackers may exploit this flaw to gather sensitive session and application data remotely. This type of vulnerability arises when an attacker can access unintended areas of the application, leading to a breach of information confidentiality. The severity of such a leak depends on the nature of the exposed information, which can potentially include session identifiers and critical application data. Given the reliance on VMware products within many infrastructures, this vulnerability poses a significant threat if unaddressed.

Technical details of the vulnerability indicate that it could be exploited via a specific request to the '/ui/login.action' endpoint in less secure versions of the software. The application permits an unauthorized request to load sensitive information without proper authentication. When an HTTP GET request is sent to this endpoint, the server returns information that should not be available to unauthenticated users. It particularly allows the extraction of session versions via a regex pattern from the body of the HTTP response, which may aid further attacks. This scenario indicates a lapse in control over sensitive data exposure in the backend logic of the application.

Exploitation of this vulnerability could lead to unauthorized access to confidential application sessions and potential security breaches. Sensitive data leaks may permit attackers to perform subsequent attacks using the uncovered data. This could facilitate privilege escalation or deeper penetrating attacks within the targeted network environment. Consequences of this vulnerability might culminate in unauthorized data access, manipulation, or exfiltration, leading to a loss of data integrity and confidentiality.

REFERENCES

Solution Advice
  • Apply the latest security patches and updates provided by VMware.
  • Implement web application firewalls to monitor and block any malicious activities.
  • Ensure that unnecessary information is not returned in HTTP responses.
  • Regularly audit application logs to identify unauthorized access attempts.

Get AI-powered remediation steps tailored to your asset.

Try AI Solutions →

Check your infrastructure.
Right now.

11,000+ scanners. Free to start. No credit card required.

CVE-2022-31711 Scanner - Information Disclosure vulnerability in VMware vRealize Log Insight | S4E