← Back

CVE-2011-1789

nvd nist
Published: May 9, 2011Modified: Apr 29, 2026

JSON object

Loading...
5.0
Vector
AV:N/AC:L/Au:N/C:N/I:P/A:N
Exploitability: 10.0 / Impact: 2.9
Source: NVD

Description

The self-extracting installer in the vSphere Client Installer package in VMware vCenter 4.0 before Update 3 and 4.1 before Update 1, VMware ESXi 4.x before 4.1 Update 1, and VMware ESX 4.x before 4.1 Update 1 does not have a digital signature, which might make it easier for remote attackers to spoof the software distribution via a Trojan horse installer.

Affected (8)

Products: Vmware: Esx, Esxi, Vcenter
3 products
Esx
Esxi
Vcenter
Configuration A
8 vulnerable
Vulnerable SoftwareAffected Versions
Vmware
Version 4.0
Version 4.1
Vmware
Version 4.0
Version 4.1
Vmware
Version 4.0
Version 4.0 update_1
Version 4.0 update_2
Version 4.1

Related CWEs

References (6)

Source: cve@mitre.org
PatchVendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Patch
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
PatchVendor Advisory

Timeline

No history available yet.