EUVD-2024-36416
VMware ESXi contains an authentication bypass vulnerability. A malicious actor with sufficient Active Directory (AD) permissions can gain full access to an ESXi host that was previously configured to use AD for user management https://blogs.vmware.com/vsphere/2012/09/joining-vsphere-hosts-to-active-directory.html by re-creating the configured AD group ('ESXi Admins' by default) after it was deleted from AD.
- EUVD state
- Present in the current official mapping
- Known exploitation
- Recorded by ENISA since 30 Jul 2024. Evidence sources: cisa_kev.
- ENISA score
- 6.8 · CVSS 3.1
- Advisory evidence
- 2 linked advisory records
Only statements that explicitly mention a fix, patch, update, workaround or mitigation are shown here.
- csaf_ncscnl · NCSC-2024-0269Kwetsbaarheden verholpen in VMware ESXi en vCenter Server
