peter bassill · operator
$ cve CVE-2020-3956 JSON

CVE-2020-3956 EXPLOIT

8.8
HIGH · CVSS 3.1 · EPSS 21.1% (pctl 98)

Patch early

A public exploit exists.

Description

VMware Cloud Director 10.0.x before 10.0.0.2, 9.7.0.x before 9.7.0.5, 9.5.0.x before 9.5.0.6, and 9.1.0.x before 9.1.0.4 do not properly handle input leading to a code injection vulnerability. An authenticated actor may be able to send malicious traffic to VMware Cloud Director which may lead to arbitrary remote code execution. This vulnerability can be exploited through the HTML5- and Flex-based UIs, the API Explorer interface and API access.

Scoring

CVSS8.8 (HIGH, v3.1)
VectorCVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
EPSS21.1% — more likely to be exploited than 98% of all CVEs
WeaknessCWE-917
On CISA KEVno
Public exploityes
Published2020-05-20
Last modified2026-06-17

Affected (3)

VendorProduct
linuxlinux kernel
vmwarephoton os
vmwarevcloud director

Public exploits

SourceTitleDate
exploit-dbvCloud Director 9.7.0.15498291 - Remote Code Execution2020-06-02

References

→ the Explorer  ·  watch your stack  ·  NVD