CVE-2017-4914: Critical severity vmware vsphere data protection vulnerability
VMware vSphere Data Protection (VDP) 6.1.x, 6.0.x, 5.8.x, and 5.5.x contains a deserialization issue. Exploitation of this issue may allow a remote attacker to execute commands on the appliance.
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of CVE-2017-4914?
CVE-2017-4914 is considered to have a high severity due to the potential for remote code execution.
How do I fix CVE-2017-4914?
To fix CVE-2017-4914, upgrade VMware vSphere Data Protection to the latest patched version provided by VMware.
What versions are affected by CVE-2017-4914?
CVE-2017-4914 affects VMware vSphere Data Protection versions 5.5.x, 5.8.x, and 6.0.x, including specific sub-versions listed.
Can CVE-2017-4914 be exploited remotely?
Yes, CVE-2017-4914 can be exploited remotely by an attacker due to its deserialization vulnerability.
What implications does CVE-2017-4914 have for my systems?
Exploitation of CVE-2017-4914 could allow an attacker to execute arbitrary commands on the affected VMware vSphere Data Protection appliance.