CVE-2019-5531

Description

VMware vSphere ESXi (6.7 prior to ESXi670-201810101-SG, 6.5 prior to ESXi650-201811102-SG, and 6.0 prior to ESXi600-201807103-SG) and VMware vCenter Server (6.7 prior to 6.7 U1b, 6.5 prior to 6.5 U2b, and 6.0 prior to 6.0 U3j) contain an information disclosure vulnerability in clients arising from insufficient session expiration. An attacker with physical access or an ability to mimic a websocket connection to a users browser may be able to obtain control of a VM Console after the user has logged out or their session has timed out.

Risk Information

Base Score
5.4
MODERATE
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:L/I:L/A:N
EPSS Score
Exploitation Probability
0.381

Associated Vulnerability

VulnerabilityOS Platform
Multiple Vulnerabilities are affected in VMware vCenter 6.0Windows
Vulnerabilities CVE-2019-5531,CVE-2019-5532 are affected in VMware vCenter 6.0-aWindows
Vulnerabilities CVE-2019-5531,CVE-2019-5532 are affected in VMware vCenter 6.0-bWindows
Vulnerabilities CVE-2019-5531,CVE-2019-5532 are affected in VMware vCenter 6.0-u1Windows
Vulnerabilities CVE-2019-5531,CVE-2019-5532 are affected in VMware vCenter 6.0-u1bWindows
Vulnerabilities CVE-2019-5531,CVE-2019-5532 are affected in VMware vCenter 6.0-u2Windows
Vulnerabilities CVE-2019-5531,CVE-2019-5532 are affected in VMware vCenter 6.0-u2aWindows
Vulnerabilities CVE-2019-5531,CVE-2019-5532 are affected in VMware vCenter 6.0-u2mWindows
Vulnerabilities CVE-2019-5531,CVE-2019-5532 are affected in VMware vCenter 6.0-u3Windows
Vulnerabilities CVE-2019-5531,CVE-2019-5532 are affected in VMware vCenter 6.0-u3aWindows
Vulnerabilities CVE-2019-5531,CVE-2019-5532 are affected in VMware vCenter 6.0-u3bWindows
Vulnerabilities CVE-2019-5531,CVE-2019-5532 are affected in VMware vCenter 6.0-u3cWindows
Vulnerabilities CVE-2019-5531,CVE-2019-5532 are affected in VMware vCenter 6.0-u3dWindows
Vulnerabilities CVE-2019-5531,CVE-2019-5532 are affected in VMware vCenter 6.0-u3eWindows
Vulnerabilities CVE-2019-5531,CVE-2019-5532 are affected in VMware vCenter 6.0-u3fWindows
Vulnerabilities CVE-2019-5531,CVE-2019-5532 are affected in VMware vCenter 6.0-u3gWindows
Vulnerabilities CVE-2019-5531,CVE-2019-5532 are affected in VMware vCenter 6.0-u3hWindows
Vulnerabilities CVE-2017-4927,CVE-2019-5531,CVE-2019-5532 are affected in VMware vCenter 6.0-u3iWindows
Vulnerabilities CVE-2019-5531,CVE-2019-5532 are affected in VMware vCenter 6.0-update2Windows
Vulnerabilities CVE-2019-5531,CVE-2019-5532 are affected in VMware vCenter 6.0-update2aWindows
Vulnerabilities CVE-2019-5531,CVE-2019-5532 are affected in VMware vCenter 6.0-update2mWindows
Vulnerabilities CVE-2019-5531,CVE-2019-5532 are affected in VMware vCenter 6.0-update3aWindows
Vulnerabilities CVE-2019-5531,CVE-2019-5532 are affected in VMware vCenter 6.0-update3bWindows
Vulnerabilities CVE-2019-5531,CVE-2019-5532 are affected in VMware vCenter 6.0-update3cWindows
Vulnerabilities CVE-2019-5531,CVE-2019-5532 are affected in VMware vCenter 6.0-update3dWindows
Vulnerabilities CVE-2019-5531,CVE-2019-5532 are affected in VMware vCenter 6.0-update3eWindows
Vulnerabilities CVE-2019-5531,CVE-2019-5532 are affected in VMware vCenter 6.0-update3fWindows
Vulnerabilities CVE-2019-5531,CVE-2019-5532 are affected in VMware vCenter 6.0-update3gWindows
Vulnerabilities CVE-2019-5531,CVE-2019-5532 are affected in VMware vCenter 6.0-update3hWindows
Vulnerabilities CVE-2019-5531,CVE-2019-5532 are affected in VMware vCenter 6.0-update3iWindows
Multiple Vulnerabilities are affected in VMware vCenter 6.5Windows
Multiple Vulnerabilities are affected in VMware vCenter 6.5-aWindows
Multiple Vulnerabilities are affected in VMware vCenter 6.5-bWindows
Multiple Vulnerabilities are affected in VMware vCenter 6.5-cWindows
Multiple Vulnerabilities are affected in VMware vCenter 6.5-dWindows
Vulnerabilities CVE-2019-5531,CVE-2019-5532,CVE-2021-21985,CVE-2021-21986 are affected in VMware vCenter 6.5-u1Windows
Vulnerabilities CVE-2019-5531,CVE-2019-5532,CVE-2021-21985,CVE-2021-21986 are affected in VMware vCenter 6.5-u1bWindows
Vulnerabilities CVE-2019-5531,CVE-2019-5532,CVE-2021-21985,CVE-2021-21986 are affected in VMware vCenter 6.5-u1cWindows
Multiple Vulnerabilities are affected in VMware vCenter 6.5-u1dWindows
Multiple Vulnerabilities are affected in VMware vCenter 6.5-u1eWindows
Multiple Vulnerabilities are affected in VMware vCenter 6.5-u1gWindows
Multiple Vulnerabilities are affected in VMware vCenter 6.5-u2Windows
Multiple Vulnerabilities are affected in VMware vCenter 6.5-u2bWindows
Multiple Vulnerabilities are affected in VMware vCenter 6.5-u2cWindows
Multiple Vulnerabilities are affected in VMware vCenter 6.5-u2dWindows
Multiple Vulnerabilities are affected in VMware vCenter 6.5-u2gWindows
Multiple Vulnerabilities are affected in VMware vCenter 6.5-update1Windows
Multiple Vulnerabilities are affected in VMware vCenter 6.5-update1bWindows
Multiple Vulnerabilities are affected in VMware vCenter 6.5-update1cWindows
Multiple Vulnerabilities are affected in VMware vCenter 6.5-update1dWindows
Multiple Vulnerabilities are affected in VMware vCenter 6.5-update1eWindows
Multiple Vulnerabilities are affected in VMware vCenter 6.5-update1gWindows
Multiple Vulnerabilities are affected in VMware vCenter 6.5-update2Windows
Multiple Vulnerabilities are affected in VMware vCenter 6.5-update2bWindows
Multiple Vulnerabilities are affected in VMware vCenter 6.5-update2cWindows
Multiple Vulnerabilities are affected in VMware vCenter 6.5-update2dWindows
Multiple Vulnerabilities are affected in VMware vCenter 6.5-update2gWindows
Multiple Vulnerabilities are affected in VMware vCenter 6.7Windows
Multiple Vulnerabilities are affected in VMware vCenter 6.7-aWindows
Multiple Vulnerabilities are affected in VMware vCenter 6.7-bWindows
Vulnerabilities CVE-2019-5531,CVE-2019-5532,CVE-2022-31697 are affected in VMware vCenter 6.7-cWindows
Multiple Vulnerabilities are affected in VMware vCenter 6.7-dWindows
Multiple Vulnerabilities are affected in VMware vCenter 6.7-u1Windows
Multiple Vulnerabilities are affected in VMware vCenter 6.7-u1bWindows
Multiple Vulnerabilities are affected in VMware vCenter 6.7-u2Windows
Multiple Vulnerabilities are affected in VMware vCenter 6.7-u2aWindows
Multiple Vulnerabilities are affected in VMware vCenter 6.7-u2cWindows
Multiple Vulnerabilities are affected in VMware vCenter 6.7-update1Windows
Multiple Vulnerabilities are affected in VMware vCenter 6.7-update1bWindows
Multiple Vulnerabilities are affected in VMware vCenter 6.7-update2Windows
Multiple Vulnerabilities are affected in VMware vCenter 6.7-update2aWindows
Multiple Vulnerabilities are affected in VMware vCenter 6.7-update2cWindows
Multiple Vulnerabilities are affected in VMware vCenter Server 6.0Windows
Multiple Vulnerabilities are affected in VMware vCenter Server 6.5Windows
Vulnerabilities CVE-2017-4927,CVE-2019-5531,CVE-2019-5532,CVE-2019-5534 are affected in VMware vCenter Server 6.0-u3iWindows
Vulnerabilities CVE-2019-5531,CVE-2019-5532,CVE-2019-5534 are affected in VMware vCenter Server 6.0-aWindows
Vulnerabilities CVE-2019-5531,CVE-2019-5532,CVE-2019-5534 are affected in VMware vCenter Server 6.0-bWindows
Vulnerabilities CVE-2019-5531,CVE-2019-5532,CVE-2019-5534 are affected in VMware vCenter Server 6.0-u1Windows
Vulnerabilities CVE-2019-5531,CVE-2019-5532,CVE-2019-5534 are affected in VMware vCenter Server 6.0-u1bWindows
Vulnerabilities CVE-2019-5531,CVE-2019-5532,CVE-2019-5534 are affected in VMware vCenter Server 6.0-u2Windows
Vulnerabilities CVE-2019-5531,CVE-2019-5532,CVE-2019-5534 are affected in VMware vCenter Server 6.0-u2aWindows
Vulnerabilities CVE-2019-5531,CVE-2019-5532,CVE-2019-5534 are affected in VMware vCenter Server 6.0-u2mWindows
Vulnerabilities CVE-2019-5531,CVE-2019-5532,CVE-2019-5534 are affected in VMware vCenter Server 6.0-u3Windows
Vulnerabilities CVE-2019-5531,CVE-2019-5532,CVE-2019-5534 are affected in VMware vCenter Server 6.0-u3aWindows
Vulnerabilities CVE-2019-5531,CVE-2019-5532,CVE-2019-5534 are affected in VMware vCenter Server 6.0-u3bWindows
Vulnerabilities CVE-2019-5531,CVE-2019-5532,CVE-2019-5534 are affected in VMware vCenter Server 6.0-u3cWindows
Vulnerabilities CVE-2019-5531,CVE-2019-5532,CVE-2019-5534 are affected in VMware vCenter Server 6.0-u3dWindows
Vulnerabilities CVE-2019-5531,CVE-2019-5532,CVE-2019-5534 are affected in VMware vCenter Server 6.0-u3eWindows
Vulnerabilities CVE-2019-5531,CVE-2019-5532,CVE-2019-5534 are affected in VMware vCenter Server 6.0-u3fWindows
Vulnerabilities CVE-2019-5531,CVE-2019-5532,CVE-2019-5534 are affected in VMware vCenter Server 6.0-u3gWindows
Vulnerabilities CVE-2019-5531,CVE-2019-5532,CVE-2019-5534 are affected in VMware vCenter Server 6.0-u3hWindows
Vulnerabilities CVE-2019-5531,CVE-2019-5532,CVE-2019-5534 are affected in VMware vCenter Server 6.0-update2Windows
Vulnerabilities CVE-2019-5531,CVE-2019-5532,CVE-2019-5534 are affected in VMware vCenter Server 6.0-update2aWindows
Vulnerabilities CVE-2019-5531,CVE-2019-5532,CVE-2019-5534 are affected in VMware vCenter Server 6.0-update2mWindows
Vulnerabilities CVE-2019-5531,CVE-2019-5532,CVE-2019-5534 are affected in VMware vCenter Server 6.0-update3aWindows
Vulnerabilities CVE-2019-5531,CVE-2019-5532,CVE-2019-5534 are affected in VMware vCenter Server 6.0-update3bWindows
Vulnerabilities CVE-2019-5531,CVE-2019-5532,CVE-2019-5534 are affected in VMware vCenter Server 6.0-update3cWindows
Vulnerabilities CVE-2019-5531,CVE-2019-5532,CVE-2019-5534 are affected in VMware vCenter Server 6.0-update3dWindows
Vulnerabilities CVE-2019-5531,CVE-2019-5532,CVE-2019-5534 are affected in VMware vCenter Server 6.0-update3eWindows
Vulnerabilities CVE-2019-5531,CVE-2019-5532,CVE-2019-5534 are affected in VMware vCenter Server 6.0-update3fWindows
Vulnerabilities CVE-2019-5531,CVE-2019-5532,CVE-2019-5534 are affected in VMware vCenter Server 6.0-update3gWindows
Vulnerabilities CVE-2019-5531,CVE-2019-5532,CVE-2019-5534 are affected in VMware vCenter Server 6.0-update3hWindows
Vulnerabilities CVE-2019-5531,CVE-2019-5532,CVE-2019-5534 are affected in VMware vCenter Server 6.0-update3iWindows
Multiple Vulnerabilities are affected in VMware vCenter Server 6.5-aWindows
Multiple Vulnerabilities are affected in VMware vCenter Server 6.5-bWindows
Multiple Vulnerabilities are affected in VMware vCenter Server 6.5-cWindows
Multiple Vulnerabilities are affected in VMware vCenter Server 6.5-dWindows
Multiple Vulnerabilities are affected in VMware vCenter Server 6.5-u1Windows
Multiple Vulnerabilities are affected in VMware vCenter Server 6.5-u1bWindows
Multiple Vulnerabilities are affected in VMware vCenter Server 6.5-u1cWindows
Multiple Vulnerabilities are affected in VMware vCenter Server 6.5-u1dWindows
Multiple Vulnerabilities are affected in VMware vCenter Server 6.5-u1eWindows
Multiple Vulnerabilities are affected in VMware vCenter Server 6.5-u1gWindows
Multiple Vulnerabilities are affected in VMware vCenter Server 6.5-u2Windows
Multiple Vulnerabilities are affected in VMware vCenter Server 6.5-u2bWindows
Multiple Vulnerabilities are affected in VMware vCenter Server 6.5-u2cWindows
Multiple Vulnerabilities are affected in VMware vCenter Server 6.5-u2dWindows
Multiple Vulnerabilities are affected in VMware vCenter Server 6.5-u2gWindows
Multiple Vulnerabilities are affected in VMware vCenter Server 6.5-update1Windows
Multiple Vulnerabilities are affected in VMware vCenter Server 6.5-update1bWindows
Multiple Vulnerabilities are affected in VMware vCenter Server 6.5-update1cWindows
Multiple Vulnerabilities are affected in VMware vCenter Server 6.5-update1dWindows
Multiple Vulnerabilities are affected in VMware vCenter Server 6.5-update1eWindows
Multiple Vulnerabilities are affected in VMware vCenter Server 6.5-update1gWindows
Multiple Vulnerabilities are affected in VMware vCenter Server 6.5-update2Windows
Multiple Vulnerabilities are affected in VMware vCenter Server 6.5-update2bWindows
Multiple Vulnerabilities are affected in VMware vCenter Server 6.5-update2cWindows
Multiple Vulnerabilities are affected in VMware vCenter Server 6.5-update2dWindows
Multiple Vulnerabilities are affected in VMware vCenter Server 6.5-update2gWindows
Multiple Vulnerabilities are affected in VMware vCenter Server 6.7Windows
Multiple Vulnerabilities are affected in VMware vCenter Server 6.7-aWindows
Multiple Vulnerabilities are affected in VMware vCenter Server 6.7-bWindows
Vulnerabilities CVE-2019-5531,CVE-2019-5532,CVE-2019-5534,CVE-2022-31697 are affected in VMware vCenter Server 6.7-cWindows
Multiple Vulnerabilities are affected in VMware vCenter Server 6.7-dWindows
Multiple Vulnerabilities are affected in VMware vCenter Server 6.7-u1Windows
Multiple Vulnerabilities are affected in VMware vCenter Server 6.7-u1bWindows
Multiple Vulnerabilities are affected in VMware vCenter Server 6.7-u2Windows
Multiple Vulnerabilities are affected in VMware vCenter Server 6.7-u2aWindows
Multiple Vulnerabilities are affected in VMware vCenter Server 6.7-u2cWindows
Multiple Vulnerabilities are affected in VMware vCenter Server 6.7-update1Windows
Multiple Vulnerabilities are affected in VMware vCenter Server 6.7-update1bWindows
Multiple Vulnerabilities are affected in VMware vCenter Server 6.7-update2Windows
Multiple Vulnerabilities are affected in VMware vCenter Server 6.7-update2aWindows
Multiple Vulnerabilities are affected in VMware vCenter Server 6.7-update2cWindows

Patch Details

No records found

References

https://nvd.nist.gov/vuln/detail/CVE-2023-1234
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2023-1234