RULE(RULE ID:2105198)

Rule General Information
Release Date: 2020-08-11
Rule Name: VMware vCenter Server Directory Service Authentication Bypass Vulnerability -2 (CVE-2020-3952)
Severity:
CVE ID:
Rule Protection Details
Description: Under certain conditions, vmdir that ships with VMware vCenter Server, as part of an embedded or external Platform Services Controller (PSC), does not correctly implement access controls.
Impact: An attacker could exploit this vulnerability to have unspecified effect.
Affected OS: Windows, Linux, Others
Reference: http://packetstormsecurity.com/files/157896/VMware-vCenter-Server-6.7-Authentication-Bypass.html
https://www.vmware.com/security/advisories/VMSA-2020-0006
Solutions
The vendors have released upgrade patches to fix vulnerabilities, please visit:
https://www.vmware.com/security/advisories/VMSA-2020-0006.html