Vulnerabilities > CVE-2023-34063 - Missing Authorization vulnerability in VMWare Aria Automation and Cloud Foundation

047910
CVSS 8.3 - HIGH
Attack vector
NETWORK
Attack complexity
LOW
Privileges required
LOW
Confidentiality impact
LOW
Integrity impact
HIGH
Availability impact
HIGH
network
low complexity
vmware
CWE-862

Summary

Aria Automation contains a Missing Access Control vulnerability. An authenticated malicious actor may exploit this vulnerability leading to unauthorized access to remote organizations and workflows.

Common Weakness Enumeration (CWE)