CVE-2023-20864
20.04.2023, 21:15
VMware Aria Operations for Logs contains a deserialization vulnerability. An unauthenticated, malicious actor with network access to VMware Aria Operations for Logs may be able to execute arbitrary code as root.Enginsight
Vendor | Product | Version |
---|---|---|
vmware | aria_operations_for_logs | 8.10.2 ≤ 𝑥 < 8.12.0 |
vmware | cloud_foundation | 4.0 ≤ 𝑥 ≤ 4.5 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration