Learn about CVE-2018-6960 affecting VMware Horizon DaaS versions 7.x before 8.0.0. Discover the impact, affected systems, exploitation details, and mitigation steps.
VMware Horizon DaaS (versions 7.x before 8.0.0) has a security flaw that could allow attackers to bypass two-factor authentication.
Understanding CVE-2018-6960
What is CVE-2018-6960?
VMware Horizon DaaS (7.x before 8.0.0) contains a broken authentication vulnerability that may enable attackers to bypass two-factor authentication. Attackers need a valid account on the platform to exploit this flaw.
The Impact of CVE-2018-6960
This vulnerability could lead to unauthorized access to VMware Horizon DaaS accounts, compromising sensitive data and potentially causing data breaches.
Technical Details of CVE-2018-6960
Vulnerability Description
Affected Systems and Versions
Exploitation Mechanism
Mitigation and Prevention
Immediate Steps to Take
Long-Term Security Practices
Patching and Updates