CVE-2014-1210
VMware vSphere Client 5.0 before Update 3 and 5.1 before Update 2 does not properly validate X.509 certificates, which allows man-in-the-middle attackers to spoof SSL servers via a crafted certificate.
View on NVDSeverity
N/A
EPSS
Probability of exploitation (next 30 days): 0.0018 (0.2%)
Percentile: 39.3%
EPSS: 2026-05-06
Affects
vmware:vsphere_clientTechnical description
VMware vSphere Client 5.0 before Update 3 and 5.1 before Update 2 does not properly validate X.509 certificates, which allows man-in-the-middle attackers to spoof SSL servers via a crafted certificate.
Published: 4/11/2014, 7:55:04 PM
Last modified: 5/6/2026, 10:30:45 PM