CVE-2024-37085

CVE Published 2024-06-25
Related CWE(s) CWE-305: Authentication Bypass by Primary Weakness, CWE-287: Improper Authentication
Related Vendor(s) vmware
Related Product(s) cloud_foundation, esxi
Exploitation Reported (CISA KEV) 2024-07-30
CVSS 3 Base Score 7.2 (HIGH)
CVSS 3 Attack Complexity LOW
CVSS 3 Attack Vector NETWORK

VMware ESXi contains an authentication bypass vulnerability. A malicious actor with sufficient Active Directory (AD) permissions can gain full access to an ESXi host that was previously configured to use AD for user management https://blogs.vmware.com/vsphere/2012/09/joining-vsphere-hosts-to-active-directory.html by re-creating the configured AD group ('ESXi Admins' by default) after it was deleted from AD.

Cyber Threat Graph Context

Explore how this CVE relates to the wider threat graph

Associated CAPEC Patterns

References