VMware vSphere Data Protection (VDP) 5.5.x though 6.1.x has an SSH private key with a publicly known password, which makes it easier for remote attackers to obtain login access via an SSH session.
Weaknesses in this category are related to the management of credentials.
Link | Tags |
---|---|
http://www.securitytracker.com/id/1037502 | vdb entry third party advisory |
http://www.securityfocus.com/bid/94990 | vdb entry third party advisory |
http://www.vmware.com/security/advisories/VMSA-2016-0024.html | vendor advisory |