QID 378558

QID 378558: VMware Aria Operations for Networks Multiple Security Vulnerabilities (VMSA-2023-0012)

VMWare has patched two vulnerabilities in its product VMware Aria Operations for Networks, which is formerly known as vRealize Network Insight.

Affected Versions:
VMware Aria Operations for Networks 6.x versions: 6.2, 6.3, 6.4, 6.5.1, 6.6, 6.7, 6.8, 6.9, and 6.10.

QID Detection Logic(Authenticated):
TBD.

Successful exploitation of these vulnerabilities may allow an attacker to perform Command Injection and/or exploit a Deserialization Vulnerability, and may also lead to Information Disclosure.

  • CVSS V3 rated as Critical - 9.8 severity.
  • CVSS V2 rated as Critical - 10 severity.
  • Solution
    Customers are advised to refer to the vendor advisory VMSA-2023-0012 for more information related to these vulnerabilities.

    CVEs related to QID 378558

    Software Advisories
    Advisory ID Software Component Link
    VMSA-2023-0012 URL Logo www.vmware.com/security/advisories/VMSA-2023-0012.html