cbcvebase.
CVE-2023-20878
published 2023-05-12

CVE-2023-20878: VMware Aria Operations contains a deserialization vulnerability. A malicious actor with administrative privileges can execute arbitrary commands and disrupt…

high7.2CVSS 3.1
AVNACLPRHUINSUCHIHAH
VMware Aria Operations contains a deserialization vulnerability. A malicious actor with administrative privileges can execute arbitrary commands and disrupt the system.

Affected

3 ranges
VendorProductVersion rangeFixed in
vmwarecloud_foundation4.0 – 4.5
vmwarevrealize_operations
vmwarevrealize_operations