Cybersecurity Alerts

Actively Exploited Vulnerabilities

← Back to Cybersecurity Alerts

CVE-2023-20887

VMware | Aria Operations for NetworksAdded 2023-06-22Remediation Deadline 2023-07-13

Vmware Aria Operations for Networks Command Injection Vulnerability

VMware Aria Operations for Networks (formerly vRealize Network Insight) contains a command injection vulnerability that allows a malicious actor with network access to perform an attack resulting in remote code execution.

Required Action

Apply updates per vendor instructions.

Weakness Classification

CWE-77

References