VMware vRealize Orchestrator... CVE-2023-20855

- AV AC AU C I A
发布: 2023-02-22
修订: 2023-03-03

VMware vRealize Orchestrator contains an XML External Entity (XXE) vulnerability. A malicious actor, with non-administrative access to vRealize Orchestrator, may be able to use specially crafted input to bypass XML parsing restrictions leading to access to sensitive information or possible escalation of privileges.

0%
暂无可用Exp或PoC
当前有2条受影响产品信息