CVE-2018-5761: Rubrik Cdm

High severity, CVSS 8.1. EPSS: 0.5% chance of exploitation in the next 30 days.

A man-in-the-middle vulnerability related to vCenter access was found in Rubrik CDM 3.x and 4.x before 4.0.4-p2. This vulnerability might expose Rubrik user credentials configured to access vCenter as Rubrik clusters did not verify TLS certificates presented by vCenter.

Affected products

  • Rubrik Cdm: up to and including 3.0.0; from 4.0.0, up to and including 4.0.4; version 4.0.4 only

Published 2018-01-22. Last modified 2026-06-17.