← back
CVE-2017-4926

CVE-2017-4926

3Vexday Risk Score

No sign of exploitation. No public exploitation artifact known so far.

ssvc Trackepss 0.8%
exploitation probability
0.8%top 48% of all CVEs
observed exploitation
nono source reports it
VMware vCenter Server (6.5 prior to 6.5 U1) contains a vulnerability that may allow for stored cross-site scripting (XSS). An attacker with VC user privileges can inject malicious java-scripts which will get executed when other VC users access the page.
Affected products
VMware · vCenter Server