Loading
Aria Operations for Networks contains an arbitrary file write vulnerability. An authenticated malicious actor with administrative access to VMware Aria Operations for Networks can write files to arbitrary locations resulting in remote code execution.
Use CWE-22, Vmware vendor hub and Aria Operations For Networks product page to widen CVE-2023-20890 into its surrounding weakness, vendor, and product context.
Compare it with CVE-2023-20887, CVE-2023-34039 and CVE-2024-22237 for nearby disclosures in the same product family. Additional editorial context is available in Why “Low” and “Medium” CVEs Still Breach Networks.