CVE-2017-4927: VMware vCenter Server

High severity, CVSS 7.5. EPSS: 2.3% chance of exploitation in the next 30 days.

VMware vCenter Server (6.5 prior to 6.5 U1 and 6.0 prior to 6.0 U3c) does not correctly handle specially crafted LDAP network packets which may allow for remote denial of service.

Affected products

  • VMware vCenter Server: from 6.0, before 6.0_u3c (fixed in 6.0_u3c); from 6.5, before 6.5_u1 (fixed in 6.5_u1)

Published 2017-11-17. Last modified 2026-06-17.