Check: 2016-B-0006
windows 7 iavm:
2016-B-0006
(in version v1 r32)
Title
VMware vCenter Orchestrator Remote Code Execution Vulnerability (Cat I impact)
Discussion
VMware has released a security advisory addressing a critical deserialization vulnerability in vCenter Orchestrator. VMware vCenter Orchestrator enables administrators to capture best practices and turn them into automated workflows. To exploit this vulnerability, an attacker would send a malicious XML request to the affected system. If successfully exploited, the attacker could execute arbitrary code.
Check Content
Fix Text
Additional Identifiers
Rule ID:
Vulnerability ID: V-64905
Group Title:
Expert Comments
Expert comments are only available to logged-in users.
CCIs
CCIs tied to check.
Number | Definition |
---|---|
No CCIs are assigned to this check |
Controls
Controls tied to check. These are derived from the CCIs shown above.
Number | Title |
---|---|
No controls are assigned to this check |