Vulnerability Details CVE-2023-34052
VMware Aria Operations for Logs contains a deserialization vulnerability. A malicious actor with non-administrative access to the local system can trigger the deserialization of data which could result in authentication bypass.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.0
EPSS Ranking 5.3%
CVSS Severity
CVSS v3 Score 7.8
Products affected by CVE-2023-34052
-
cpe:2.3:a:vmware:aria_operations_for_logs:4.0
-
cpe:2.3:a:vmware:aria_operations_for_logs:5.0
-
cpe:2.3:a:vmware:aria_operations_for_logs:8.10.2
-
cpe:2.3:a:vmware:aria_operations_for_logs:8.12