QID 216303
Date Published: 2023-01-17
QID 216303: VMware ESXi 7.0 Patch Release ESXi70U3si-20841705 Missing (VMSA-2022-0030)
VMware ESXi is an enterprise level computer virtualization product.
Affected Versions:
VMware ESXi 7.0.x prior build 20841705
QID Detection Logic (Unauthenticated):
This QID checks for vulnerable versions of VMware ESXi with build version using web service present on target.
A malicious actor with local access to ESXi may exploit this issue to corrupt memory leading to an escape of the ESXi sandbox.
Solution
Vendor has released patch addressing the vulnerability, for more information please refer to VMSA-2022-0030
Vendor References
- VMSA-2022-0030 -
www.vmware.com/security/advisories/VMSA-2022-0030.html
CVEs related to QID 216303
Software Advisories
| Advisory ID | Software | Component | Link |
|---|---|---|---|
| VMSA-2022-0030 |
|