Vulnerability Watch

Forum Discussion

snarang's avatar
snarang
Product Team
5 years ago

Sensitive Information Disclosure in VMware vCenter Server (CV

Sensitive Information Disclosure in VMware vCenter Server (CVE-2020-3952)

VMware recently published a security advisory for CVE-2020-3952, a critical information disclosure flaw in vCenter Server due to improper access control implementation. 

The vulnerability received a CVSSv3 rating of 10.0 by the vendor, which indicates that it would be easy to exploit. However, an attacker would need to have network access before they could exploit the flaw.

For more information, including patch details and plugin availability, please visit our blog.

1 Reply

  • Anonymous's avatar
    Anonymous

    Thank you for the notice!