PT-2017-16206 · Vmware · Vmware Vcenter Server+1
Published
2017-08-01
·
Updated
2019-10-03
·
CVE-2017-4923
CVSS v3.1
9.8
Critical
| Vector | AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H |
Name of the Vulnerable Software and Affected Versions
VMware vCenter Server versions 6.5 prior to 6.5 U1
Description
The issue is an information disclosure vulnerability that may allow plaintext credentials to be obtained when using the vCenter Server Appliance file-based backup feature.
Recommendations
For versions 6.5 prior to 6.5 U1, update to version 6.5 U1 or later to resolve the issue.
Fix
Insufficiently Protected Credentials
Information Disclosure
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Vmware Vcenter
Vmware Vcenter Server