This article provides the procedure to remediate SSL certificate-related vulnerabilities (Plugin IDs 38169, 38173, and 38685) on ESXi 8.0.3 hosts by replacing self-signed certificates with certificates issued by an internal enterprise Certificate Authority (CA).
ESXi
vCenter Server
vpxd.certmgmt.mode advanced setting to custom to ensure the VMware Certificate Authority (VMCA) does not revert custom certificates.