PT-2012-4593 · Eucalyptus+1 · Eucalyptus+1

Publicado

2012-07-17

·

Atualizado

2012-07-18

·

CVE-2012-3241

CVSS v2.0

7.5

Alta

VetorAV:N/AC:L/Au:N/C:P/I:P/A:P
Name of the Vulnerable Software and Affected Versions Eucalyptus versions 2.0.3 and 3.0.x before 3.0.2
Description The issue is related to improper authentication of SOAP requests in the VMware Broker. This allows remote attackers to execute arbitrary VMware Broker API commands.
Recommendations For Eucalyptus version 2.0.3, update to a version that properly authenticates SOAP requests. For Eucalyptus versions 3.0.x before 3.0.2, update to version 3.0.2 or later to ensure proper authentication of SOAP requests.

Correção

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

CVE-2012-3241

Produtos afetados

Eucalyptus
Vmware Broker