QID 216297

Date Published: 2022-10-12

QID 216297: VMware ESXi 6.7 Patch Release ESXi670-202210101-SG Missing (VMSA-2022-0025)

VMware ESXi is an enterprise level computer virtualization product.

Affected Versions:
VMware ESXi 6.7.x prior build 20497097

QID Detection Logic (Unauthenticated):
This QID checks for vulnerable versions of VMware ESXi with build version using web service present on target.

A malicious actor with privileges within the VMX process only, may create a denial of service condition on the host.

  • CVSS V3 rated as High - 6.5 severity.
  • CVSS V2 rated as Medium - 3.6 severity.
  • Solution

    Refer to VMware advisory VMSA-2022-0025 for more information.

    CVEs related to QID 216297

    Software Advisories
    Advisory ID Software Component Link
    VMSA-2022-0025 URL Logo www.vmware.com/security/advisories/VMSA-2022-0025.html