CVE-2020-3952

Severity CVSS v4.0:
Pending analysis
Type:
CWE-306 Missing Authentication for Critical Function
Publication date:
10/04/2020
Last modified:
30/10/2025

Description

Under certain conditions, vmdir that ships with VMware vCenter Server, as part of an embedded or external Platform Services Controller (PSC), does not correctly implement access controls.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:vmware:vcenter_server:6.7:-:*:*:*:*:*:*