Initiatives for
As the national authority for Cybersecurity the CCB has developed several initiatives for specific publics which are presented here.
Reference:
Advisory #2023-0103
Version:
1.0
Affected software:
VMware Aria Operations for Networks 6.x
Type:
SSH authentication bypass (for CVE-2023-34039) and arbitrary file write resulting in remote code execution (for CVE-2023-20890)
CVE/CVSS:
https://www.vmware.com/security/advisories/VMSA-2023-0018.html
CVE-2023-34039: Aria Operations for Networks contains an authentication bypass vulnerability.
CVE-2023-20898: Aria Operations for Networks contains an arbitrary file write vulnerability.
The Centre for Cyber security Belgium strongly recommends system administrators to visit VMWare's download page to apply the necessary patches: https://kb.vmware.com/s/article/94152