CVE-2005-4583
Summary
| CVE | CVE-2005-4583 |
|---|---|
| State | PUBLISHED |
| Assigner | mitre |
| Source Priority | CVE Program / NVD first with legacy fallback |
| Published | 2005-12-29 11:03:00 UTC |
| Updated | 2025-04-03 01:03:51 UTC |
| Description | Unspecified vulnerability in the Management Interface in VMware ESX Server 2.x up to 2.5.x before 24 December 2005 allows "remote code execution in the Web browser" via unspecified attack vectors, probably related to cross-site scripting (XSS). |
Risk And Classification
CVSS v2.0 Breakdown
Access Vector
NetworkAccess Complexity
MediumAuthentication
NoneConfidentiality
NoneIntegrity
PartialAvailability
NoneAV:N/AC:M/Au:N/C:N/I:P/A:N
NVD Known Affected Configurations (CPE 2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Operating System | Vmware | Esx | 2.0 | All | All | All |
| Operating System | Vmware | Esx | 2.0.1 | All | All | All |
| Operating System | Vmware | Esx | 2.1.1 | All | All | All |
| Operating System | Vmware | Esx | 2.1.2 | All | All | All |
| Operating System | Vmware | Esx | 2.5 | All | All | All |
| Operating System | Vmware | Esx | 2.5.2 | All | All | All |
Vendor Declared Affected Products
References
| Reference | Source | Link | Tags |
|---|---|---|---|
| VMWare ESX Server Management Interface HTML Injection Vulnerability | af854a3a-2127-422b-91ae-364da2661108 | www.securityfocus.com | Patch |
| www.osvdb.org/22119 | af854a3a-2127-422b-91ae-364da2661108 | www.osvdb.org | Patch |
| Webmail : Solution de messagerie professionnelle - OVHcloud- OVH | af854a3a-2127-422b-91ae-364da2661108 | www.vupen.com | Vendor Advisory |
| SecurityTracker.com Archives - VMware ESX Server Management Interface Bug Lets Remote Users Execute Code in the Browser | af854a3a-2127-422b-91ae-364da2661108 | securitytracker.com | Exploit, Patch |
| Secunia - Advisories - VMware ESX Server Management Interface Unspecified Vulnerability | af854a3a-2127-422b-91ae-364da2661108 | secunia.com | Patch, Vendor Advisory |
| VMware Knowledge Base - Answer | af854a3a-2127-422b-91ae-364da2661108 | www.vmware.com | Patch |
| CVE Program record | CVE.ORG | www.cve.org | canonical |
| NVD vulnerability detail | NVD | nvd.nist.gov | canonical, analysis |
No vendor comments have been submitted for this CVE.
There are currently no legacy QID mappings associated with this CVE.