VMware ESXi contains an authentication bypass vulnerability. A malicious actor with sufficient Active Directory (AD) permissions can gain full access to an ESXi host that was previously configured to use AD for user management https://blogs.vmware.com/vsphere/2012/09/joining-vsphere-hosts-to-active-directory.html by re-creating the configured AD group ('ESXi Admins' by default) after it was deleted from AD.
CVSS Details
- CVSS 3.1 Base Score: 6.8
- CVSS 3.1 Vector: (CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H)
Covered by Rapid7
| Product | Vendor Advisory | Solution File | Added | Published |
|---|---|---|---|---|
| Dell Powerstore Dsa2024365 | — | Upgrade Dell PowerStoreOS to the latest version | Jan 13, 2026 | Aug 27, 2024 |
| Vmsa 2024 0013 | — | Upgrade Broadcom ESXi to a remediated versionUpgrade VMware ESXi 8.0.3 to build number 24022510Upgrade VMware ESXi 8.0.1 to build number 24022510Upgrade VMware ESXi 8.0.2 to build number 24022510Upgrade VMware ESXi 8.0.0 to build number 24022510 | Jun 28, 2024 | Jun 25, 2024 |
Prioritise with Active Threat Intelligence
With curated Threat Intelligence, you can see which vulnerabilities truly put you at risk, prioritize what matters most, and act before attackers do.
Explore Intelligence Hub