Security Advisory

CVE-2019-11242

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2019-07-12 19:04:51
Last updated 2024-08-04 22:48:08
Assigner mitre
State PUBLISHED

Description

A man-in-the-middle vulnerability related to vCenter access was found in Cohesity DataPlatform version 5.x and 6.x prior to 6.1.1c. Cohesity clusters did not verify TLS certificates presented by vCenter. This vulnerability could expose Cohesity user credentials configured to access vCenter.