vulnerability

VMware vCenter Server: updates address sensitive information disclosure vulnerability in the VMware Directory Service (VMSA-2020-0006) (CVE-2020-3952)

Severity
10
CVSS
(AV:N/AC:M/Au:N/C:P/I:P/A:P)
Published
Mar 25, 2020
Added
Mar 25, 2020
Modified
May 3, 2022

Description

Under certain conditions vmdir that ships with VMware vCenter Server, as part of an embedded or external Platform Services Controller (PSC), does not correctly implement access controls. VMware has evaluated the severity of this issue to be in the Critical severity range with a maximum CVSSv3 base score of 10.0.

Solution

vmware-vcenter-6_7_x-upgrade-latest
Title
NEW

Explore Exposure Command

Confidently identify and prioritize exposures from endpoint to cloud with full attack surface visibility and threat-aware risk context.