cbcvebase.
CVE-2018-6960
published 2018-04-20

CVE-2018-6960: VMware Horizon DaaS (7.x before 8.0.0) contains a broken authentication vulnerability that may allow an attacker to bypass two-factor authentication. Note: In…

high8.8CVSS 3.0
AVNACLPRLUINSUCHIHAH
VMware Horizon DaaS (7.x before 8.0.0) contains a broken authentication vulnerability that may allow an attacker to bypass two-factor authentication. Note: In order to exploit this issue, an attacker must have a legitimate account on Horizon DaaS.

Affected

2 ranges
VendorProductVersion rangeFixed in
vmwarehorizon_daas
vmwarehorizon_daas>= 7.0.0 < 8.0.08.0.0