VMware

Vcenter Server

81 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
Warnung Exploit
  • EPSS 93.23%
  • Veröffentlicht 10.04.2020 14:15:12
  • Zuletzt bearbeitet 13.03.2025 17:28:17

Under certain conditions, vmdir that ships with VMware vCenter Server, as part of an embedded or external Platform Services Controller (PSC), does not correctly implement access controls.

  • EPSS 0.15%
  • Veröffentlicht 28.10.2019 16:15:14
  • Zuletzt bearbeitet 21.11.2024 04:45:09

Sensitive information disclosure vulnerability resulting from a lack of certificate validation during the File-Based Backup and Restore operations of VMware vCenter Server Appliance (6.7 before 6.7u3a and 6.5 before 6.5u3d) may allow a malicious acto...

  • EPSS 0.15%
  • Veröffentlicht 28.10.2019 16:15:14
  • Zuletzt bearbeitet 21.11.2024 04:45:09

Sensitive information disclosure vulnerability resulting from a lack of certificate validation during the File-Based Backup and Restore operations of VMware vCenter Server Appliance (6.7 before 6.7u3a and 6.5 before 6.5u3d) may allow a malicious acto...

  • EPSS 0.75%
  • Veröffentlicht 18.09.2019 22:15:11
  • Zuletzt bearbeitet 21.11.2024 04:45:08

VMware vSphere ESXi (6.7 prior to ESXi670-201810101-SG, 6.5 prior to ESXi650-201811102-SG, and 6.0 prior to ESXi600-201807103-SG) and VMware vCenter Server (6.7 prior to 6.7 U1b, 6.5 prior to 6.5 U2b, and 6.0 prior to 6.0 U3j) contain an information ...

  • EPSS 0.38%
  • Veröffentlicht 18.09.2019 21:15:13
  • Zuletzt bearbeitet 21.11.2024 04:45:08

VMware vCenter Server (6.7.x prior to 6.7 U3, 6.5 prior to 6.5 U3 and 6.0 prior to 6.0 U3j) contains an information disclosure vulnerability where Virtual Machines deployed from an OVF could expose login information via the virtual machine's vAppConf...

  • EPSS 0.49%
  • Veröffentlicht 18.09.2019 21:15:13
  • Zuletzt bearbeitet 21.11.2024 04:45:08

VMware vCenter Server (6.7.x prior to 6.7 U3, 6.5 prior to 6.5 U3 and 6.0 prior to 6.0 U3j) contains an information disclosure vulnerability due to the logging of credentials in plain-text for virtual machines deployed through OVF. A malicious user w...

  • EPSS 0.03%
  • Veröffentlicht 20.12.2017 15:29:00
  • Zuletzt bearbeitet 20.04.2025 01:37:25

VMware vCenter Server Appliance (vCSA) (6.5 before 6.5 U1d) contains a local privilege escalation vulnerability via the 'showlog' plugin. Successful exploitation of this issue could result in a low privileged user gaining root level privileges over t...

  • EPSS 0.17%
  • Veröffentlicht 17.11.2017 14:29:00
  • Zuletzt bearbeitet 20.04.2025 01:37:25

The flash-based vSphere Web Client (6.0 prior to 6.0 U3c and 5.5 prior to 5.5 U3f) i.e. not the new HTML5-based vSphere Client, contains SSRF and CRLF injection issues due to improper neutralization of URLs. An attacker may exploit these issues by se...

  • EPSS 1.42%
  • Veröffentlicht 17.11.2017 14:29:00
  • Zuletzt bearbeitet 20.04.2025 01:37:25

VMware vCenter Server (6.5 prior to 6.5 U1 and 6.0 prior to 6.0 U3c) does not correctly handle specially crafted LDAP network packets which may allow for remote denial of service.

  • EPSS 0.21%
  • Veröffentlicht 15.09.2017 13:29:00
  • Zuletzt bearbeitet 20.04.2025 01:37:25

VMware vCenter Server (6.5 prior to 6.5 U1) contains a vulnerability that may allow for stored cross-site scripting (XSS). An attacker with VC user privileges can inject malicious java-scripts which will get executed when other VC users access the pa...