← back
CVE-2018-6960

CVE-2018-6960

3Vexday Risk Score

No sign of exploitation. No public exploitation artifact known so far.

ssvc Trackepss 2.6%
exploitation probability
2.6%top 16% of all CVEs
observed exploitation
nono source reports it
VMware Horizon DaaS (7.x before 8.0.0) contains a broken authentication vulnerability that may allow an attacker to bypass two-factor authentication. Note: In order to exploit this issue, an attacker must have a legitimate account on Horizon DaaS.
Affected products
VMware · Horizon DaaS