Dec. 1, 2023, 8 p.m. | MalBot

Malware Analysis, News and Indicators - Latest topics malware.news

VMware has fixed a critical-severity authentication bypass flaw in its cloud service delivery platform, two weeks after the vulnerability was first disclosed on Nov. 14.


The flaw (CVE-2023-34060) exists in VMware Cloud Director Appliance version 10.5 (if the deployment has been upgraded to 10.5 from an older release), and as of Nov. 30 the fix is available via version 10.5.1. Other Cloud Director Appliance versions (including new installations of 10.5 or 10.4 and below) are not impacted.


“On an upgraded …

authentication authentication bypass authentication bypass flaw bug bypass cloud cloud director cloud service critical cve cve-2023-34060 delivery deployment director flaw nov patches platform release service service delivery severity version vmware vmware cloud vulnerability

Security Analyst

@ Northwestern Memorial Healthcare | Chicago, IL, United States

GRC Analyst

@ Richemont | Shelton, CT, US

Security Specialist

@ Peraton | Government Site, MD, United States

Information Assurance Security Specialist (IASS)

@ OBXtek Inc. | United States

Cyber Security Technology Analyst

@ Airbus | Bengaluru (Airbus)

Vice President, Cyber Operations Engineer

@ BlackRock | LO9-London - Drapers Gardens