CVE-2013-5971

Session fixation vulnerability in the vSphere Web Client Server in VMware vCenter Server 5.0 before Update 3 allows remote attackers to hijack web sessions and gain privileges via unspecified vectors.
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:vmware:vcenter_server:*:update_2_rc:*:*:*:*:*:*
cpe:2.3:a:vmware:vcenter_server:4.0.0.10021:*:*:*:*:*:*:*
cpe:2.3:a:vmware:vcenter_server:4.0.0.12305:*:*:*:*:*:*:*
cpe:2.3:a:vmware:vcenter_server:4.1:*:*:*:*:*:*:*
cpe:2.3:a:vmware:vcenter_server:4.1.0.12319:*:*:*:*:*:*:*
cpe:2.3:a:vmware:vcenter_server:4.1.0.14766:*:*:*:*:*:*:*
cpe:2.3:a:vmware:vcenter_server:4.1.0.17435:*:*:*:*:*:*:*
cpe:2.3:a:vmware:vcenter_server:5.0:*:*:*:*:*:*:*
cpe:2.3:a:vmware:vcenter_server:5.0:update_1:*:*:*:*:*:*

History

No history.

Information

Published : 2013-10-21 10:54

Updated : 2023-12-10 11:16


NVD link : CVE-2013-5971

Mitre link : CVE-2013-5971

CVE.ORG link : CVE-2013-5971


JSON object : View

Products Affected

vmware

  • vcenter_server
CWE
CWE-264

Permissions, Privileges, and Access Controls