RULE(RULE ID:338677)

Rule General Information
Release Date: 2025-02-11
Rule Name: VMware Aria Operations Networks Deserialization Vulnerability (CVE-2023-20888)
Severity:
CVE ID:
Rule Protection Details
Description: Aria Operations for Networks contains an authenticated deserialization vulnerability. A malicious actor with network access to VMware Aria Operations for Networks and valid 'member' role credentials may be able to perform a deserialization attack resulting in remote code execution.
Impact: An attacker can carefully construct malicious serialized data and pass it to the application, and execute the malicious code constructed by the attacker when the application deserializes the object.
Affected OS: Windows, Linux, Others
Reference: https://www.vmware.com/security/advisories/VMSA-2023-0012.html
https://cxsecurity.com/cveshow/CVE-2023-20888/
https://www.auscert.org.au/bulletins/ESB-2023.3285
Solutions
Refer to the announcement or patch by the vendor: https://www.vmware.com/security/advisories/VMSA-2023-0012.html