Vulnerability Details CVE-2023-34051
VMware Aria Operations for Logs contains an authentication bypass vulnerability. An unauthenticated, malicious actor can inject files into the operating system of an impacted appliance which can result in remote code execution.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.577
EPSS Ranking 98.0%
CVSS Severity
CVSS v3 Score 9.8
Products affected by CVE-2023-34051
-
cpe:2.3:a:vmware:aria_operations_for_logs:4.0
-
cpe:2.3:a:vmware:aria_operations_for_logs:5.0
-
cpe:2.3:a:vmware:aria_operations_for_logs:8.10
-
cpe:2.3:a:vmware:aria_operations_for_logs:8.10.2
-
cpe:2.3:a:vmware:aria_operations_for_logs:8.12
-
cpe:2.3:a:vmware:aria_operations_for_logs:8.6
-
cpe:2.3:a:vmware:aria_operations_for_logs:8.8