CVE Vulnerabilities

CVE-2013-5971

Published: Oct 21, 2013 | Modified: Aug 29, 2017
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
6.8 MEDIUM
AV:N/AC:M/Au:N/C:P/I:P/A:P
RedHat/V2
RedHat/V3
Ubuntu

Session fixation vulnerability in the vSphere Web Client Server in VMware vCenter Server 5.0 before Update 3 allows remote attackers to hijack web sessions and gain privileges via unspecified vectors.

Affected Software

Name Vendor Start Version End Version
Vcenter_server Vmware * 5.0 (including)
Vcenter_server Vmware 4.0.0.10021 (including) 4.0.0.10021 (including)
Vcenter_server Vmware 4.0.0.12305 (including) 4.0.0.12305 (including)
Vcenter_server Vmware 4.1 (including) 4.1 (including)
Vcenter_server Vmware 4.1.0.12319 (including) 4.1.0.12319 (including)
Vcenter_server Vmware 4.1.0.14766 (including) 4.1.0.14766 (including)
Vcenter_server Vmware 4.1.0.17435 (including) 4.1.0.17435 (including)
Vcenter_server Vmware 5.0 (including) 5.0 (including)
Vcenter_server Vmware 5.0-update_1 (including) 5.0-update_1 (including)

References