Port 34246 on ESXi reported with HTTP TRACE / TRACK method vulnerability
search cancel

Port 34246 on ESXi reported with HTTP TRACE / TRACK method vulnerability

book

Article ID: 411867

calendar_today

Updated On:

Products

VMware vSphere ESXi

Issue/Introduction

A vulnerability scan may report that port 34246 on ESXi is affected by an HTTP TRACE / TRACK method vulnerability.

Environment

VMware vSphere ESXi 8.x

Cause

ESXi does not use port 34246. Reference: VMware Ports and Protocols.

This port is associated with third-party software installed on the ESXi host. For example, the service FujitsuSVRC is found to be bound to this port.

Resolution

  1. Log in to the vCenter web client.
  2. Navigate to ESXi host > Configure > Firewall.
  3. Identify the service using port 34246.
  4. Contact the relevant vendor to confirm the function of the service and obtain guidance on remediating the reported vulnerability.