Free and open-source vulnerability scanner

Mageni eases for you the vulnerability scanning, assessment, and management process. It is free and open-source.

Install Now

Available for macOS, Windows, and Linux

App screenshot

VMSA-2016-0005 VMware product updates address critical and important security issues

Information

Severity

Severity

Critical

Family

Family

General

CVSSv2 Base

CVSSv2 Base

10.0

CVSSv2 Vector

CVSSv2 Vector

AV:N/AC:L/Au:N/C:C/I:C/A:C

Solution Type

Solution Type

Vendor Patch

Created

Created

7 years ago

Modified

Modified

5 years ago

Summary

Mware product updates address critical and important security issues.

Insight

Insight

The RMI server of Oracle JRE JMX deserializes any class when deserializing authentication credentials. This may allow a remote, unauthenticated attacker to cause deserialization flaws and execute their commands.

Affected Software

Affected Software

vCenter Server 6.0 on Windows without workaround of KB 2145343 vCenter Server 6.0 on Linux (VCSA) prior to 6.0.0b vCenter Server 5.5 prior to 5.5 U3d (on Windows), 5.5 U3 (VCSA) vCenter Server 5.1 prior to 5.1 U3b vCenter Server 5.0 prior to 5.0 U3e

Detection Method

Detection Method

Check the build number

Solution

Solution

Updates are available.

Common Vulnerabilities and Exposures (CVE)