← back
CVE-2023-20889highCWE-77

CVE-2023-20889

58Vexday Risk Score

Patch soon. It has a working public exploit.

ssvc Attendcvss 7.5epss 79%
exploitation probability
79%top 1% of all CVEs
observed exploitation
nono source reports it
Aria Operations for Networks contains an information disclosure vulnerability. A malicious actor with network access to VMware Aria Operations for Networks may be able to perform a command injection attack resulting in information disclosure.
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N