CVE-2023-34043: VMware Aria Operations
Medium severity, CVSS 6.7. EPSS: 0.2% chance of exploitation in the next 30 days.
VMware Aria Operations contains a local privilege escalation vulnerability. A malicious actor with administrative access to the local system can escalate privileges to 'root'.
Affected products
- VMware Aria Operations: version 8.6.0 only; version 8.10.0 only; version 8.12.0 only
- VMware Cloud Foundation: from 4.0, before 4.4 (fixed in 4.4); version 5.0 only
Published 2023-09-27. Last modified 2026-06-17.