CVE-2023-20877: High severity vmware vcenter server and cloud foundation vulnerability
Published May 12, 2023
·Updated
VMware Aria Operations contains a privilege escalation vulnerability. An authenticated malicious user with ReadOnly privileges can perform code execution leading to privilege escalation.
Affected Software
12 affected components
VMware Cloud Foundation>=4.0<=4.5
VMware vRealize Operations=8.6.0
VMware vRealize Operations=8.6.0-hotfix1
VMware vRealize Operations=8.6.0-hotfix2
VMware vRealize Operations=8.6.0-hotfix4
VMware vRealize Operations=8.6.0-hotfix5
VMware vRealize Operations=8.6.0-hotfix6
VMware vRealize Operations=8.6.0-hotfix8
VMware vRealize Operations=8.6.0-hotfix9
VMware vRealize Operations=8.10.0
VMware vRealize Operations=8.10.0-hotfix1
VMware vRealize Operations=8.10.0-hotfix2
Event History
May 12, 2023
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
DescriptionWeakness
Frequently Asked Questions
1
What is CVE-2023-20877?
CVE-2023-20877 is a privilege escalation vulnerability in VMware Aria Operations.
2
Who is affected by CVE-2023-20877?
VMware Cloud Foundation versions 4.0 to 4.5, and VMware vRealize Operations versions 8.6.0 to 8.10.0-hotfix2 are affected by CVE-2023-20877.
3
What is the severity of CVE-2023-20877?
CVE-2023-20877 has a severity rating of 8.8 (high).
4
How can an attacker exploit CVE-2023-20877?
An authenticated malicious user with ReadOnly privileges can exploit CVE-2023-20877 to perform code execution and achieve privilege escalation.
5
Is there a fix available for CVE-2023-20877?
Yes, VMware has released a security advisory (VMSA-2023-0009) that provides information on necessary patches and mitigations for CVE-2023-20877.