Critical severity9.8NVD Advisory· Published Jan 29, 2018· Updated Jun 17, 2026
CVE-2017-4947
CVE-2017-4947
Description
VMware vRealize Automation (7.3 and 7.2) and vSphere Integrated Containers (1.x before 1.3) contain a deserialization vulnerability via Xenon. Successful exploitation of this issue may allow remote attackers to execute arbitrary code on the appliance.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
5cpe:2.3:a:vmware:vrealize_automation:7.2.0:*:*:*:*:*:*:*+ 2 more
- cpe:2.3:a:vmware:vrealize_automation:7.2.0:*:*:*:*:*:*:*
- cpe:2.3:a:vmware:vrealize_automation:7.3.0:*:*:*:*:*:*:*
- (no CPE)range: 7.3 and 7.2
cpe:2.3:a:vmware:vsphere_integrated_containers:*:*:*:*:*:*:*:*+ 1 more
- cpe:2.3:a:vmware:vsphere_integrated_containers:*:*:*:*:*:*:*:*range: <1.3.0
- (no CPE)range: 1.x before 1.3
Patches
Vulnerability mechanics
References
4- www.vmware.com/security/advisories/VMSA-2018-0006.htmlnvdPatchVendor Advisory
- www.securityfocus.com/bid/102852nvdThird Party AdvisoryVDB Entry
- www.securitytracker.com/id/1040289nvdThird Party AdvisoryVDB Entry
- www.securitytracker.com/id/1040290nvdThird Party AdvisoryVDB Entry
News mentions
0No linked articles in our index yet.