VMware has released a security update to address a Lightweight Directory Access Protocol (LDAP) certificate validation vulnerability in vCenter Server. Exploitation of this vulnerability may allow an attacker to obtain sensitive information.
Available updates include:
VMware vCenter Server version 6.0 update 1
VMware vCenter Server version 5.5 update 3
Users and administrators are encouraged to review VMware security advisory VSMA-2015-0006 and apply the necessary updates.
CISA has added four new vulnerabilities to its Known Exploited Vulnerabilities (KEV) Catalog, based on evidence of active exploitation. CVE-2019-19006 Sangoma FreePBX Improper…