Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-4643-h6pq-84f9

Опубликовано: 24 мая 2022
Источник: github
Github: Не прошло ревью
CVSS3: 9.8

Описание

SFCB (Small Footprint CIM Broker) as used in ESXi has an authentication bypass vulnerability. A malicious actor with network access to port 5989 on ESXi may exploit this issue to bypass SFCB authentication by sending a specially crafted request.

SFCB (Small Footprint CIM Broker) as used in ESXi has an authentication bypass vulnerability. A malicious actor with network access to port 5989 on ESXi may exploit this issue to bypass SFCB authentication by sending a specially crafted request.

EPSS

Процентиль: 59%
0.00378
Низкий

9.8 Critical

CVSS3

Дефекты

CWE-287

Связанные уязвимости

CVSS3: 9.8
nvd
больше 4 лет назад

SFCB (Small Footprint CIM Broker) as used in ESXi has an authentication bypass vulnerability. A malicious actor with network access to port 5989 on ESXi may exploit this issue to bypass SFCB authentication by sending a specially crafted request.

CVSS3: 9.8
fstec
больше 4 лет назад

Уязвимость службы SFCB (Small Footprint CIM Broker) гипервизора VMware ESXi и платформы виртуализации VMware Cloud Foundation, позволяющая нарушителю обойти процедуру аутентификации

EPSS

Процентиль: 59%
0.00378
Низкий

9.8 Critical

CVSS3

Дефекты

CWE-287