Lucene search

K
cvelistVmwareCVELIST:CVE-2023-34051
HistoryOct 20, 2023 - 4:11 a.m.

CVE-2023-34051

2023-10-2004:11:52
vmware
www.cve.org
3
vmware
aria operations
authentication bypass
remote code execution
cve-2023-34051
operating system injection

10 High

AI Score

Confidence

High

0.002 Low

EPSS

Percentile

54.1%

VMware Aria Operations for Logs contains an authentication bypass vulnerability.Β An unauthenticated, malicious actor can inject files into the operating system of an impacted appliance which can result in remote code execution.

CNA Affected

[
  {
    "defaultStatus": "unaffected",
    "product": "VMware Aria Operations for Logs",
    "vendor": "n/a",
    "versions": [
      {
        "status": "affected",
        "version": "VMware Aria Operations for Logs 8.x, VMware Cloud Foundation (VMware Aria Operations for Logs) 5.x 4.x "
      }
    ]
  }
]

10 High

AI Score

Confidence

High

0.002 Low

EPSS

Percentile

54.1%