CVE-2015-2342

critical

Description

The JMX RMI service in VMware vCenter Server 5.0 before u3e, 5.1 before u3b, 5.5 before u3, and 6.0 before u1 does not restrict registration of MBeans, which allows remote attackers to execute arbitrary code via the RMI protocol.

References

https://www.7elements.co.uk/resources/technical-advisories/cve-2015-2342-vmware-vcenter-remote-code-execution/

http://www.zerodayinitiative.com/advisories/ZDI-15-455

http://www.vmware.com/security/advisories/VMSA-2015-0007.html

http://www.securitytracker.com/id/1033720

http://www.securityfocus.com/bid/76930

http://seclists.org/fulldisclosure/2015/Oct/1

Details

Source: Mitre, NVD

Published: 2015-10-12

Updated: 2025-04-12

Risk Information

CVSS v2

Base Score: 10

Vector: CVSS2#AV:N/AC:L/Au:N/C:C/I:C/A:C

Severity: Critical

CVSS v3

Base Score: 9.8

Vector: CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

Severity: Critical

EPSS

EPSS: 0.92031