Vulnerabilities (CVE)

Filtered by vendor Vmware Subscribe
Filtered by product Esx
Total 84 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2005-3620 1 Vmware 1 Esx 2023-12-10 2.1 LOW N/A
The management interface for VMware ESX Server 2.0.x before 2.0.2 patch 1, 2.1.x before 2.1.3 patch 1, and 2.x before 2.5.3 patch 2 records passwords in cleartext in URLs that are stored in world-readable web server log files, which allows local users to gain privileges.
CVE-2006-2481 1 Vmware 1 Esx 2023-12-10 5.0 MEDIUM N/A
VMware ESX Server 2.0.x before 2.0.2 and 2.x before 2.5.2 patch 4 stores authentication credentials in base 64 encoded format in the vmware.mui.kid and vmware.mui.sid cookies, which allows attackers to gain privileges by obtaining the cookies using attacks such as cross-site scripting (CVE-2005-3619).
CVE-2005-4773 1 Vmware 1 Esx 2023-12-10 4.9 MEDIUM N/A
The configuration of VMware ESX Server 2.x, 2.0.x, 2.1.x, and 2.5.x allows local users to cause a denial of service (shutdown) via the (1) halt, (2) poweroff, and (3) reboot scripts executed at the service console.
CVE-2003-1291 1 Vmware 1 Esx 2023-12-10 7.2 HIGH N/A
VMware ESX Server 1.5.2 before Patch 4 allows local users to execute arbitrary programs as root via certain modified VMware ESX Server environment variables.