CyberSec.Space Logo
Back to CVE Browser

CVE-2020-3944

HIGH
8.6
CVSS Severity Score
EPSS Score0.1390%
EPSS Percentile22.11th
PublishedFeb 19, 2020
Last ModifiedNov 21, 2024

Vulnerability Description

vRealize Operations for Horizon Adapter (6.7.x prior to 6.7.1 and 6.6.x prior to 6.6.1) has an improper trust store configuration leading to authentication bypass. An unauthenticated remote attacker who has network access to vRealize Operations, with the Horizon Adapter running, may be able to bypass Adapter authentication.

Affected Platforms (CPE)

📦
Vmware

Vrealize Operations

>= 6.6.0 and < 6.6.1
📦
Vmware

Vrealize Operations

>= 6.7.0 and < 6.7.1

References & Advisories

Related Vulnerabilities