CVE-2023-34038

3 documents3 sources
Severity
5.3MEDIUM
EPSS
0.5%
top 32.55%
CISA KEV
Not in KEV
Exploit
No known exploits
Affected products
Timeline
PublishedAug 4

Description

VMware Horizon Server contains an information disclosure vulnerability. A malicious actor with network access may be able to access information relating to the internal network configuration.

CVSS vector

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:NExploitability: 3.9 | Impact: 1.4

Affected Packages2 packages

CVEListV5vmware_horizon_serverHorizon Server 2306, Horizon Server 2303, Horizon Server 2212, Horizon Server 2209, Horizon Server 2206, Horizon Server 2111.x, Horizon Server 2106, Horizon Server 2103, Horizon Server 2012, Horizon Server 2006
NVDvmware/horizon_client8 versions+7

🔴Vulnerability Details

2
GHSA
GHSA-7qrx-qc95-8fxc: VMware Horizon Server contains an information disclosure vulnerability2023-08-04
CVEList
CVE-2023-34038: VMware Horizon Server contains an information disclosure vulnerability2023-08-04
CVE-2023-34038 (MEDIUM CVSS 5.3) | VMware Horizon Server contains an i | cvebase.io