PT-2014-8497 · Vmware · Vmware Vcloud Automation Center+1

Publicado

2014-12-11

·

Atualizado

2018-10-09

·

CVE-2014-8373

CVSS v2.0

9.0

Alta

VetorAV:N/AC:L/Au:S/C:C/I:C/A:C
Name of the Vulnerable Software and Affected Versions VMware vCloud Automation Center versions 6.0.1 through 6.1.1
Description The issue allows remote authenticated users to gain privileges via vectors involving the "Connect (by) Using VMRC" function in the VMware Remote Console (VMRC) function.
Recommendations For versions 6.0.1 through 6.1.1, consider restricting access to the VMRC function until a fix is available. As a temporary workaround, limit the use of the "Connect (by) Using VMRC" function to minimize the risk of exploitation.

Correção

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

CVE-2014-8373

Produtos afetados

Vmware Remote Console
Vmware Vcloud Automation Center