VMware warns admins of public exploit for vRealize RCE flaw 

PoC exploit code is now available for an authentication bypass flaw in vRealize Log Insight

clock • 2 min read
VMware warns admins of public exploit for vRealize RCE flaw 
Image:

VMware warns admins of public exploit for vRealize RCE flaw 

VMware has alerted its users to a significant security threat to its vRealize cloud management solution, now known as VMware Aria Operations for Logs.

Identified as CVE-2023-34051 in a recent advisory, the high-severity remote code execution (RCE) flaw (CVSS score 8.1) can potentially allow unauthorised individuals to execute code with root privi...

To continue reading this article...

Join Computing

  • Unlimited access to real-time news, analysis and opinion from the technology industry
  • Receive important and breaking news in our daily newsletter
  • Be the first to hear about our events and awards programmes
  • Join live member only interviews with IT leaders at the ‘IT Lounge’; your chance to ask your burning tech questions and have them answered
  • Access to the Computing Delta hub providing market intelligence and research
  • Receive our members-only newsletter with exclusive opinion pieces from senior IT Leaders

Join now

 

Already a Computing member?

Login

You may also like
Inside KKR's $3.8bn offer for VMware EUC

Corporate

Private equity firm KKR has offered $3.8bn for the End User Computing business

clock 27 February 2024 • 5 min read
Broadcom shifts VMware to subscription model, ends perpetual license sales

Corporate

The chipmaker aims to double VMware's earnings within three years

clock 13 December 2023 • 3 min read
Broadcom cuts workforce at VMware following $69bn acquisition

Corporate

The exact number of employees affected by the latest cuts remains unclear

clock 28 November 2023 • 2 min read

Sign up to our newsletter

The best news, stories, features and photos from the day in one perfectly formed email.

More on Threats and Risks

Ivanti VPN malware can survive a factory reset, warns CISA

Ivanti VPN malware can survive a factory reset, warns CISA

'Assume a sophisticated threat actor may deploy rootkit level persistence'

John Leonard
clock 01 March 2024 • 2 min read
Hugging Face AI platform infested with 100 malicious code-execution models, researchers warn

Hugging Face AI platform infested with 100 malicious code-execution models, researchers warn

These models could create a persistent backdoor for attackers

clock 01 March 2024 • 3 min read
US, UK, Canada seek global coalition to combat state disinformation

US, UK, Canada seek global coalition to combat state disinformation

US, UK and Canada have endorsed a framework to tackle information manipulation

clock 27 February 2024 • 3 min read