CVE Published: 15/09/2017 |
CVE Updated: 16/09/2024 |
CVE Year: 2017 Source: vmware |
Vendor: VMware |
Product: vCenter Server Status : PUBLISHED
CVE-2017-4926 Description
VMware vCenter Server (6.5 prior to 6.5 U1) contains a vulnerability that may allow for stored cross-site scripting (XSS). An attacker with VC user privileges can inject malicious java-scripts which will get executed when other VC users access the page.