S4E just found a high-severity finding from top 10 tcp port service scan
PlatformPlansPartners
Resources
ToolsBlogDocs
Sign Up →
critical·Product Based Web Vulnerabilities·Updated Oct 23, 2025

CVE-2020-3952 Scanner

CVE-2020-3952 Scanner - Missing Authorization vulnerability in VMware vCenter Server

Est. Time~10 seconds
Scan TypeSingle Scan
Targetsdomain, subdomain, ipv4
CostFree
2.5k
Times Used
continuous scan runs
4.7k
Continuously Checked
assets under CS
5
Vulnerabilities Found
confirmed findings
References
🔴
CISA Known Exploited Vulnerability
This CVE is actively exploited in the wild. CISA mandates federal agencies to patch immediately.
CVECVE-2020-3952
9.8
CVSScritical
Exploitable remotely over the internet · no authentication required.

Under certain conditions, vmdir that ships with VMware vCenter Server, as part of an embedded or external Platform Services Controller (PSC), does not correctly implement access controls.

Attack Vector
Network
Privileges Req.
None
User Interaction
None
Affected
VMware vCenter Serverby n/a
vCenter Server 6.7 (embedded or external PSC) prior to 6.7u3f is affected by CVE-2020-3952 if it was upgraded from a previous release line such as 6.0 or 6.5. Clean installations of vCenter Server 6.7 (embedded or external PSC) are not affected.
Updated Aug 21, 2026View on NVD →
Detail

VMware vCenter Server is widely utilized by IT professionals and organizations for managing virtualized environments. This robust platform, developed by VMware, allows users to streamline virtual infrastructure across the hybrid cloud. Its primary function is to centralize control over VMware vSphere environments, facilitating seamless operations in large-scale enterprises. System administrators leverage its advanced capabilities for enhanced scalability, performance, and efficiency. It is an integral component of VMware's cloud infrastructure suite, often deployed in data centers worldwide. With its range of features, VMware vCenter Server remains essential for effective virtual machine management and orchestration.

The vulnerability identified in VMware vCenter Server pertains to an improper implementation of access control mechanisms. This flaw arises in the Platform Services Controller component, particularly within the Lightweight Directory Access Protocol (LDAP) implementation. Unauthorized users are able to gain access to sensitive functions without proper authentication. This oversight potentially leads to privilege escalation and unauthorized data exposure. Essentially, the vulnerability compromises the server's integrity, posing significant risks to organizations relying on VMware vCenter Server. Addressing this flaw is crucial for maintaining the security of affected systems.

Technical details reveal that the vulnerability lies in the handling of specific LDAP requests within VMware vCenter Server. The server does not adequately enforce access restrictions on certain LDAP operations. This lapse allows malicious users to perform unauthorized actions by exploiting the misconfigured access controls. The vulnerable endpoint is likely related to LDAP communication, where improper validation of user permissions occurs. Additionally, the vulnerability may involve endpoints interacting with the embedded or external Platform Services Controller. Proper access authorization checks are bypassed during these operations, contributing to the security breach observed in affected versions.

When this vulnerability is exploited, attackers can gain unauthorized access to critical functions within the server environment. This may lead to privilege escalation, allowing attackers to execute higher-level administrative tasks without consent. Sensitive information stored within the server becomes prone to unauthorized exposure. Additionally, the compromise could facilitate further attacks on interconnected systems, potentially leading to widespread data breaches. Organizations relying on VMware vCenter Server are consequently at risk of significant operational disruption and data integrity loss. Immediate remediation is essential to mitigate these potential impacts.

REFERENCES

Solution Advice
  • Apply the latest security patches and updates provided by VMware to address access control issues.
  • Strengthen access controls and validate user permissions consistently.
  • Implement robust monitoring to detect unauthorized activity swiftly.
  • Regularly review and update security policies to prevent unauthorized access.
  • Conduct comprehensive security audits to identify and remediate vulnerabilities.

Get AI-powered remediation steps tailored to your asset.

Try AI Solutions →

Check your infrastructure.
Right now.

11,000+ scanners. Free to start. No credit card required.

CVE-2020-3952 Scanner - Missing Authorization vulnerability in VMware vCenter Server | S4E