CVE-2010-2928 describes a vulnerability in the vCenter Tomcat Management Application within VMware vCenter Server 4.1 prior to Update 1. This flaw allows local users to gain privileges by accessing log-on credentials stored in a configuration file. With a CVSS score of 2.1, this vulnerability has a low severity, requiring local access with low attack complexity to achieve partial confidentiality impact. There is no evidence of active exploitation, nor is public exploit code available in Metasploit, Nuclei, or ExploitDB, and it has received minimal community discussion or media coverage.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
4.1CPE matchmatch criteria | cpe:2.3:a:vmware:vcenter_server:4.1:*:*:*:*:*:*:* |
CVSS version used by this source: 2.0
AV:L/AC:L/Au:N/C:P/I:N/A:N
The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.0 Bluesky, 0.0 Mastodon, and 0.6 GitHub mentions.
No media coverage found for this CVE.
The average CVE in this peer group has 0.0 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.