First published: Mon May 09 2011(Updated: )
The self-extracting installer in the vSphere Client Installer package in VMware vCenter 4.0 before Update 3 and 4.1 before Update 1, VMware ESXi 4.x before 4.1 Update 1, and VMware ESX 4.x before 4.1 Update 1 does not have a digital signature, which might make it easier for remote attackers to spoof the software distribution via a Trojan horse installer.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
VMware vCenter | =4.0-update_1 | |
VMware vCenter | =4.1 | |
VMware vCenter | =4.0 | |
VMware vCenter | =4.0-update_2 | |
VMware ESXi | =4.1 | |
VMware ESXi | =4.0 | |
VMware ESX | =4.1 | |
VMware ESX | =4.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.