An authenticated, high privileged malicious actor with network access to the VMware Cloud Director tenant or provider may be able to exploit a remote code execution vulnerability to gain access to the server.
No PoCs from references.
- https://github.com/ARPSyndicate/cvemon
- https://github.com/avboy1337/CVE-2022-22966
- https://github.com/bb33bb/CVE-2022-22966
- https://github.com/karimhabush/cyberowl
- https://github.com/nomi-sec/PoC-in-GitHub