CVE Published: 07/06/2023 |
CVE Updated: 02/08/2024 |
CVE Year: 2023 Source: vmware |
Vendor: n/a |
Product: Aria Operations for Networks (Formerly vRealize Network Insight) Status : PUBLISHED
CVE-2023-20888 Description
Aria Operations for Networks contains an authenticated deserialization vulnerability. A malicious actor with network access to VMware Aria Operations for Networks and valid \'member\' role credentials may be able to perform a deserialization attack resulting in remote code execution.