claytonvantol.us
SESSION: secure TLS: 1.3 PID: 1337

clayton@site:~/news$ cat cve-2020-3952-vmware-vcenter-server.log

CVE-2020-3952 — VMware vCenter Server Information Disclosure Vulnerability

2021-11-03 • CISA Known Exploited Vulnerability


[event] VMware vCenter Server contains an information disclosure vulnerability in the VMware Directory Service (vmdir) when the Platform Services Controller (PSC) does not correctly implement access controls. Successful exploitation allows an attacker with network access to port 389 to extract sensitive information.

> AFFECTED SOFTWARE

Field Value
Vendor VMware
Product vCenter Server
CWE CWE-306
CVE ID CVE-2020-3952
Date Added 2021-11-03
Due Date 2022-05-03
Ransomware Campaign Unknown

> MITIGATION

Apply updates per vendor instructions.

Due Date: 2022-05-03

> REFERENCES


← back to terminal

UPTIME: 1337d v2.0.1 privacy LAST LOGIN: 2026-05-30 20:36:16 UTC