ZDI-CAN-20612: ZDI-23-841: VMware Aria Operations for Networks getNotifiedEvents Deserialization of Untrusted Data Remote Code Execution Vulnerability
This vulnerability allows remote attackers to execute arbitrary code on affected installations of VMware Aria Operations for Networks. Authentication is required to exploit this vulnerability.
Affected Software
Event History
Frequently Asked Questions
What is the severity of ZDI-CAN-20612?
ZDI-CAN-20612 is considered a high-severity vulnerability due to its potential for remote code execution.
How do I fix ZDI-CAN-20612?
To fix ZDI-CAN-20612, ensure that you apply the recommended patches provided by VMware for Aria Operations for Networks.
Who can exploit ZDI-CAN-20612?
ZDI-CAN-20612 can be exploited by authenticated remote attackers with access to the affected installations.
What are the potential impacts of ZDI-CAN-20612?
The potential impacts of ZDI-CAN-20612 include unauthorized remote code execution, which could compromise system integrity.
Is ZDI-CAN-20612 found in all versions of VMware Aria Operations for Networks?
ZDI-CAN-20612 affects specific installations of VMware Aria Operations for Networks, so it's important to verify your version against the advisory.