← Back

CVE-2023-20877

nvd nist
Published: May 12, 2023Modified: Jan 27, 2025

JSON object

Loading...
8.8
Vector
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Exploitability: 2.8 / Impact: 5.9
Source: NVD

Description

VMware Aria Operations contains a privilege escalation vulnerability. An authenticated malicious user with ReadOnly privileges can perform code execution leading to privilege escalation.

Affected (12)

2 products
Cloud Foundation
Vrealize Operations
Configuration A
12 vulnerable
Vulnerable SoftwareAffected Versions
From 4.0 to 4.5
Vmware
Version 8.10.0
Version 8.10.0 hotfix1
Version 8.10.0 hotfix2
Version 8.6.0
Version 8.6.0 hotfix1
Version 8.6.0 hotfix2
Version 8.6.0 hotfix4
Version 8.6.0 hotfix5
Version 8.6.0 hotfix6
Version 8.6.0 hotfix8
Version 8.6.0 hotfix9

References (2)

Source: security@vmware.com
Vendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Vendor Advisory

Timeline

No history available yet.