PT-2005-4383 · Vmware · Vmware Esx Server
Publicado
2005-12-31
·
Atualizado
2018-10-30
·
CVE-2005-3620
CVSS v2.0
2.1
Baixa
| Vetor | AV:L/AC:L/Au:N/C:P/I:N/A:N |
Name of the Vulnerable Software and Affected Versions
VMware ESX Server versions 2.0.x through 2.0.1
VMware ESX Server versions 2.1.x through 2.1.2
VMware ESX Server versions 2.x through 2.5.2
Description
The management interface records passwords in cleartext in URLs that are stored in world-readable web server log files, allowing local users to gain privileges.
Recommendations
For versions 2.0.x through 2.0.1, update to version 2.0.2 patch 1.
For versions 2.1.x through 2.1.2, update to version 2.1.3 patch 1.
For versions 2.x through 2.5.2, update to version 2.5.3 patch 2.
Correção
Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾
Identificadores relacionados
Produtos afetados
Vmware Esx Server