Loading
The JMX RMI service in VMware vCenter Server 5.0 before u3e, 5.1 before u3b, 5.5 before u3, and 6.0 before u1 does not restrict registration of MBeans, which allows remote attackers to execute arbitrary code via the RMI protocol.
Use Vmware vendor hub and Vcenter Server product page to widen CVE-2015-2342 into its surrounding weakness, vendor, and product context.
Compare it with CVE-2024-38812, CVE-2024-37079 and CVE-2023-34048 for nearby disclosures in the same product family.