VMware vCenter contains an authentication bypass vulnerability in the VMware Directory Service. A malicious actor with network access to vCenter may exploit this issue to bypass authentication and gain unauthorized access to the system.
| Vendor | Product | Versions |
|---|---|---|
| VMware | Cloud Foundation | 9.1.x.x, 9.0.x.x, 5.x, 9.1.x.x, 9.0.x.x, 9.1.x.x, 9.0.x.x, 8.0, 3.0, 5.1.x, 5.0.x, 4.x, 3.0 |
Downstream vendors/products affected by this vulnerability
| Vendor | Product | Source | Confidence |
|---|---|---|---|
| vmware | vsphere foundation | mitre_affected | 90% |
| vmware | vcenter | mitre_affected | 90% |
| vmware | telco cloud infrastructure | mitre_affected | 90% |
| vmware | telco cloud | mitre_affected | 90% |