A Critical Vulnerability uncovered in VMware Aria Operations for Networks

Red | Vulnerability Report

Two vulnerabilities have been discovered in VMware Aria Operations for Networks (formerly vRealize Network Insight). The first vulnerability, CVE-2023-34039, is an authentication bypass that allows attackers to access the network CLI. The other vulnerability, CVE-2023-20890, enables remote code execution through arbitrary file write.

Reduce real exposure. Not just vulnerability volume.