Loading
Aria Operations for Networks contains a command injection vulnerability. A malicious actor with network access to VMware Aria Operations for Networks may be able to perform a command injection attack resulting in remote code execution.
Use CWE-77, Vmware vendor hub and Aria Operations For Networks product page to widen CVE-2023-20887 into its surrounding weakness, vendor, and product context.
Compare it with CVE-2023-34039, CVE-2024-22237 and CVE-2023-20890 for nearby disclosures in the same product family. Additional editorial context is available in Why “Low” and “Medium” CVEs Still Breach Networks.