vulnerability
VMware vCenter Server: updates address sensitive information disclosure vulnerability in the VMware Directory Service (VMSA-2020-0006) (CVE-2020-3952)
| Severity | CVSS | Published | Added | Modified |
|---|---|---|---|---|
| 10 | (AV:N/AC:M/Au:N/C:P/I:P/A:P) | Mar 25, 2020 | Mar 25, 2020 | May 3, 2022 |
Severity
10
CVSS
(AV:N/AC:M/Au:N/C:P/I:P/A:P)
Published
Mar 25, 2020
Added
Mar 25, 2020
Modified
May 3, 2022
Description
Under certain conditions vmdir that ships with VMware vCenter Server, as part of an embedded or external Platform Services Controller (PSC), does not correctly implement access controls. VMware has evaluated the severity of this issue to be in the Critical severity range with a maximum CVSSv3 base score of 10.0.
Solution
vmware-vcenter-6_7_x-upgrade-latest
NEW
Explore Exposure Command
Confidently identify and prioritize exposures from endpoint to cloud with full attack surface visibility and threat-aware risk context.