CVE-2017-4943: VMware vCenter Server

High severity, CVSS 7.8. EPSS: 0.4% chance of exploitation in the next 30 days.

VMware vCenter Server Appliance (vCSA) (6.5 before 6.5 U1d) contains a local privilege escalation vulnerability via the 'showlog' plugin. Successful exploitation of this issue could result in a low privileged user gaining root level privileges over the appliance base OS.

Affected products

  • VMware vCenter Server: version 6.5 only

Published 2017-12-20. Last modified 2026-06-17.