CVE-2013-3107
- EPSS 0.29%
- Veröffentlicht 01.05.2013 12:00:14
- Zuletzt bearbeitet 11.04.2025 00:51:21
VMware vCenter Server 5.1 before Update 1, when anonymous LDAP binding for Active Directory is enabled, allows remote attackers to bypass authentication by providing a valid username in conjunction with an empty password.
CVE-2012-6326
- EPSS 0.4%
- Veröffentlicht 22.02.2013 20:55:01
- Zuletzt bearbeitet 11.04.2025 00:51:21
VMware vCenter Server 4.1 before Update 3 and 5.0 before Update 2, and vCSA 5.0 before Update 2, allows remote attackers to cause a denial of service (disk consumption) via vectors that trigger large log entries.
CVE-2013-1659
- EPSS 0.88%
- Veröffentlicht 22.02.2013 20:55:01
- Zuletzt bearbeitet 11.04.2025 00:51:21
VMware vCenter Server 4.0 before Update 4b, 5.0 before Update 2, and 5.1 before 5.1.0b; VMware ESXi 3.5 through 5.1; and VMware ESX 3.5 through 4.1 do not properly implement the Network File Copy (NFC) protocol, which allows man-in-the-middle attacke...
- EPSS 0.12%
- Veröffentlicht 21.12.2012 21:55:01
- Zuletzt bearbeitet 11.04.2025 00:51:21
Directory traversal vulnerability in VMware vCenter Server Appliance (vCSA) 5.0 before Update 2 and 5.1 before Patch 1 allows remote authenticated users to read arbitrary files via unspecified vectors.
- EPSS 0.14%
- Veröffentlicht 21.12.2012 21:55:01
- Zuletzt bearbeitet 11.04.2025 00:51:21
VMware vCenter Server Appliance (vCSA) 5.0 before Update 2 does not properly parse XML documents, which allows remote authenticated users to read arbitrary files via unspecified vectors.