cve,link,title,description,vendor,products,score,severity,epss,cisa,cisa_published,article,ransomware,exploited,exploited_date,poc,trended,trended_no_1,trended_no_1_date,published,trended_score CVE-2023-34038,https://securityvulnerability.io/vulnerability/CVE-2023-34038,Information Disclosure Vulnerability in VMware Horizon Server,VMware Horizon Server is susceptible to an information disclosure vulnerability that could allow unauthorized access to sensitive internal network configuration details. A malicious actor with network access may exploit this flaw to glean data that could compromise the integrity and security of the network. It is essential for organizations using VMware Horizon Server to review their network configurations and apply recommended security measures to mitigate potential threats. Visit VMware's official advisory for detailed information and remediation steps.,Vmware,VMware Horizon Server,5.3,MEDIUM,0.0007200000109151006,false,,false,false,false,,,false,false,,2023-08-04T12:15:00.000Z,0 CVE-2023-34037,https://securityvulnerability.io/vulnerability/CVE-2023-34037,HTTP Request Smuggling Vulnerability in VMware Horizon Server,"VMware Horizon Server is exposed to an HTTP request smuggling vulnerability that could allow an attacker with network access to craft malicious requests. This could potentially lead to unauthorized access or manipulation of web requests, posing a significant risk to data integrity and overall system security. Organizations using VMware Horizon Server should review security practices and patch affected versions promptly to mitigate this risk.",Vmware,Vmware Horizon Server,5.3,MEDIUM,0.0006900000153109431,false,,false,false,false,,,false,false,,2023-08-04T12:15:00.000Z,0 CVE-2020-3997,https://securityvulnerability.io/vulnerability/CVE-2020-3997,Cross Site Scripting Vulnerability in VMware Horizon Server,"VMware Horizon Server versions prior to 7.10.3 and 7.13.0 are susceptible to a Cross Site Scripting (XSS) vulnerability, allowing attackers to inject and execute malicious scripts. This security flaw can be exploited by sending crafted requests that lead to unintended script execution in the context of another user, potentially compromising sensitive information. Users are advised to update to the latest version to mitigate this risk.",Vmware,Vmware Horizon Server,5.4,MEDIUM,0.000539999979082495,false,,false,false,false,,,false,false,,2020-10-23T13:49:06.000Z,0 CVE-2019-5513,https://securityvulnerability.io/vulnerability/CVE-2019-5513,Information Disclosure Vulnerability in VMware Horizon Connection Server,"VMware Horizon Connection Server prior to version 7.8, including versions 7.5.2 and 6.2.8, has a vulnerability that may lead to the disclosure of sensitive internal information. Successful exploitation could expose internal domain names, the internal name of the Connection Server, or the internal IP address of the gateway, potentially compromising the security of network resources.",Vmware,Vmware Horizon Connection Server,5.3,MEDIUM,0.0010499999625608325,false,,false,false,false,,,false,false,,2019-04-09T19:30:44.000Z,0