CVE Vulnerabilities

CVE-2005-3620

Published: Dec 31, 2005 | Modified: Oct 30, 2018
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
2.1 LOW
AV:L/AC:L/Au:N/C:P/I:N/A:N
RedHat/V2
RedHat/V3
Ubuntu

The management interface for VMware ESX Server 2.0.x before 2.0.2 patch 1, 2.1.x before 2.1.3 patch 1, and 2.x before 2.5.3 patch 2 records passwords in cleartext in URLs that are stored in world-readable web server log files, which allows local users to gain privileges.

Affected Software

Name Vendor Start Version End Version
Esx Vmware 2.0.1 (including) 2.0.2 (excluding)
Esx Vmware 2.1.1 (including) 2.1.3 (excluding)
Esx Vmware 2.5.2 (including) 2.5.3 (excluding)

References