CVE-2010-4573

Vmware Esxi - Authentication Bypass

Title source: rule

Description

The Update Installer in VMware ESXi 4.1, when a modified sfcb.cfg is present, does not properly configure the SFCB authentication mode, which allows remote attackers to obtain access via an arbitrary username and password.

Scores

EPSS 0.0204
EPSS Percentile 83.6%

Classification

CWE
CWE-287
Status draft

Affected Products (1)

vmware/esxi

Timeline

Published Dec 22, 2010
Tracked Since Feb 18, 2026