CVE-2023-20888
07.06.2023, 15:15
Aria Operations for Networks contains an authenticated deserialization vulnerability.A malicious actor with network access to VMware Aria Operations for Networks and valid 'member' role credentials may be able to perform a deserialization attack resulting in remote code execution.Enginsight
Vendor | Product | Version |
---|---|---|
vmware | vrealize_network_insight | 6.2.0 ≤ 𝑥 ≤ 6.10.0 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration