- EPSS 2.92%
- Published 12.10.2015 10:59:00
- Last modified 12.04.2025 10:46:40
vpxd in VMware vCenter Server 5.0 before u3e, 5.1 before u3, and 5.5 before u2 allows remote attackers to cause a denial of service via a long heartbeat message.
CVE-2015-6932
- EPSS 0.17%
- Published 18.09.2015 22:59:09
- Last modified 12.04.2025 10:46:40
VMware vCenter Server 5.5 before u3 and 6.0 before u1 does not verify X.509 certificates from TLS LDAP servers, which allows man-in-the-middle attackers to spoof servers and obtain sensitive information via a crafted certificate.
CVE-2014-4241
- EPSS 0.91%
- Published 17.07.2014 11:17:09
- Last modified 12.04.2025 10:46:40
Unspecified vulnerability in the Oracle WebLogic Server component in Oracle Fusion Middleware 10.0.2.0 and 10.3.6.0 allows remote attackers to affect integrity via vectors related to WLS - Web Services.
CVE-2013-5971
- EPSS 0.5%
- Published 21.10.2013 10:54:30
- Last modified 11.04.2025 00:51:21
Session fixation vulnerability in the vSphere Web Client Server in VMware vCenter Server 5.0 before Update 3 allows remote attackers to hijack web sessions and gain privileges via unspecified vectors.
CVE-2013-1659
- EPSS 1.13%
- Published 22.02.2013 20:55:01
- Last modified 11.04.2025 00:51:21
VMware vCenter Server 4.0 before Update 4b, 5.0 before Update 2, and 5.1 before 5.1.0b; VMware ESXi 3.5 through 5.1; and VMware ESX 3.5 through 4.1 do not properly implement the Network File Copy (NFC) protocol, which allows man-in-the-middle attacke...
CVE-2012-6326
- EPSS 0.4%
- Published 22.02.2013 20:55:01
- Last modified 11.04.2025 00:51:21
VMware vCenter Server 4.1 before Update 3 and 5.0 before Update 2, and vCSA 5.0 before Update 2, allows remote attackers to cause a denial of service (disk consumption) via vectors that trigger large log entries.
- EPSS 0.9%
- Published 15.02.2013 12:09:29
- Last modified 11.04.2025 00:51:21
VMware vCenter Server 4.0 before Update 4b and 4.1 before Update 3a, VMware VirtualCenter 2.5, VMware vSphere Client 4.0 before Update 4b and 4.1 before Update 3a, VMware VI-Client 2.5, VMware ESXi 3.5 through 4.1, and VMware ESX 3.5 through 4.1 do n...
CVE-2010-2928
- EPSS 0.06%
- Published 16.02.2011 01:00:02
- Last modified 11.04.2025 00:51:21
The vCenter Tomcat Management Application in VMware vCenter Server 4.1 before Update 1 stores log-on credentials in a configuration file, which allows local users to gain privileges by reading this file.
CVE-2009-2698
- EPSS 23.09%
- Published 27.08.2009 17:30:00
- Last modified 09.04.2025 00:30:58
The udp_sendmsg function in the UDP implementation in (1) net/ipv4/udp.c and (2) net/ipv6/udp.c in the Linux kernel before 2.6.19 allows local users to gain privileges or cause a denial of service (NULL pointer dereference and system crash) via vecto...
CVE-2009-2416
- EPSS 0.19%
- Published 11.08.2009 18:30:00
- Last modified 09.04.2025 00:30:58
Multiple use-after-free vulnerabilities in libxml2 2.5.10, 2.6.16, 2.6.26, 2.6.27, and 2.6.32, and libxml 1.8.17, allow context-dependent attackers to cause a denial of service (application crash) via crafted (1) Notation or (2) Enumeration attribute...