CVE-2024-38815: exploitation status and patch state
CVE-2024-38815 · CVSS 4.3 MEDIUM · EPSS <1%
VMware NSX contains a content spoofing vulnerability.
An unauthenticated malicious actor may be able to craft a URL and redirect a victim to an attacker controlled domain leading to sensitive information disclosure.
Is CVE-2024-38815 exploited?
Not in the CISA KEV catalog.
EPSS puts exploitation in the next 30 days at <1%.
Public exploit code: none found in monitored sources.