ZeroHour

CVE-2023-20864

CVSS 3.1
9.8 critical
EPSS
70%p99
Published
()
Modified
Description

VMware Aria Operations for Logs contains a deserialization vulnerability. An unauthenticated, malicious actor with network access to VMware Aria Operations for Logs may be able to execute arbitrary code as root.

Vendors
vmware
Products
aria operations for logs, cloud foundation
Weakness
CWE-502
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

In the news