【Information Security】Multiple vulnerabilities in VMware ESXi and vCenter Server were privately reported to VMware. Please confirm and update as soon as possible.
1.VMware released multiple vulnerabilities, the affected systems are:
VMware ESXi, VMware vCenter Server, VMware Cloud Foundation,
For related information, please refer to the following URL:
https://www.vmware.com/security/advisories/VMSA-2022-0030.html
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2022-31696 .
2.Hackers can exploit this vulnerability to cause denial of service, leak information, or bypass security restrictions on the affected system.
Resolution:
A.Upgrade to the latest version as soon as possible.
B.Protect with a hardware firewall.
C.Avoid exposing the management page to the Internet, or restrict access to IP.
D.Other information security protection methods.
3.For more question about information security, please directly consult with Computer Center, at rogeryu@mail.ntust.edu.tw or applechang@mail.ntust.edu.tw
