Man-in-the-Middle Vulnerability in Cohesity DataPlatform by Cohesity
CVE-2019-11242
8.1HIGH
What is CVE-2019-11242?
A man-in-the-middle vulnerability affecting Cohesity DataPlatform enables attackers to intercept vCenter access. This issue arises because the Cohesity clusters do not adequately verify the TLS certificates presented by vCenter, potentially exposing sensitive user credentials configured for vCenter access. To safeguard against this weakness, users should ensure they are running version 6.1.1c or later.
