Rule ID
SV-256619r888348_rule
Version
V1R1
CCIs
CCI-001749
VMware ships Performance Charts on the vCenter Server Appliance (VCSA)with one webapp. Any other path is potentially malicious and must be removed.
At the command prompt, run the following command: # ls -A /usr/lib/vmware-perfcharts/tc-instance/webapps Expected result: statsreport If the output does not match the expected result, this is a finding.
For each unexpected directory returned in the check, run the following command: # rm /usr/lib/vmware-perfcharts/tc-instance/webapps/<NAME> Restart the service with the following command: # vmon-cli --restart perfcharts