CVE-2023-34051
CRITICAL 9.8EPSS 44.7%
VMware Aria Operations for Logs contains an authentication bypass vulnerability. An unauthenticated, malicious actor can inject files into the operating system of an impacted appliance which can result in remote code execution.
- CVSS v3.1
- 9.8 CRITICAL
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H - CVSS v3.1
- 9.8 CRITICAL
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H - EPSS
- 44.67% chance of exploitation in the next 30 days, 99th percentile
- Published
- 2023-10-20
- Updated
- 2025-05-02
Proof-of-concept exploits (1)
- horizon3ai/CVE-2023-3405162★ · 2023-10-20