CVE-2010-4573: Critical severity VMware ESXi vulnerability
Published Dec 22, 2010
·Updated
The Update Installer in VMware ESXi 4.1, when a modified sfcb.cfg is present, does not properly configure the SFCB authentication mode, which allows remote attackers to obtain access via an arbitrary username and password.
Affected Software
1 affected component
VMware ESXi=4.1
Event History
Dec 22, 2010
CVE Published
via MITRE·08:00 PM
Data Sourced
via MITRE·08:00 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2010-4573?
CVE-2010-4573 is considered a critical vulnerability due to the potential for unauthorized remote access.
2
How do I fix CVE-2010-4573?
To fix CVE-2010-4573, ensure the sfcb.cfg file is not modified and follow VMware's security updates for ESXi 4.1.
3
What software is affected by CVE-2010-4573?
CVE-2010-4573 affects VMware ESXi version 4.1.
4
Can CVE-2010-4573 lead to unauthorized access?
Yes, CVE-2010-4573 allows attackers to gain unauthorized access via arbitrary credentials.
5
Is CVE-2010-4573 exploitable remotely?
Yes, CVE-2010-4573 is exploitable remotely due to its configuration vulnerabilities.