CVE-2017-4923: VMware vCenter Server
Critical severity, CVSS 9.8. EPSS: 1.9% chance of exploitation in the next 30 days.
VMware vCenter Server (6.5 prior to 6.5 U1) contains an information disclosure vulnerability. This issue may allow plaintext credentials to be obtained when using the vCenter Server Appliance file-based backup feature.
Affected products
- VMware vCenter Server: version 6.5 only
Published 2017-08-01. Last modified 2026-06-17.