[原文]The configuration of VMware ESX Server 2.x, 2.0.x, 2.1.x, and 2.5.x allows local users to cause a denial of service (shutdown) via the (1) halt, (2) poweroff, and (3) reboot scripts executed at the service console.
VMware ESX Server Multiple Command Unprivileged Local DoS
Local Access Required
Denial of Service
Loss of Availability,
VMWare ESX Server contains a flaw that may allow a local denial of service. An unprivileged user can execute the 'halt', 'poweroff' and 'reboot' scripts from the service console, which will result in loss of availability for the service.
Currently, there are no known upgrades or patches to correct this issue. It is possible to correct the flaw by removing the 'halt', 'poweroff' and 'reboot' files in the '/etc/security/console.apps' directory.