VMware WebAccess '/ui/vmDirect.do' Information Disclosure Vulnerability
BID:39106
Info
VMware WebAccess '/ui/vmDirect.do' Information Disclosure Vulnerability
| Bugtraq ID: | 39106 |
| Class: | Input Validation Error |
| CVE: |
CVE-2009-2277 |
| Remote: | Yes |
| Local: | No |
| Published: | Mar 29 2010 12:00AM |
| Updated: | Apr 01 2010 09:32PM |
| Credit: | David Byrne and Tom Leavey |
| Vulnerable: |
VMWare VirtualCenter 2.0.2 VMWare VirtualCenter 2.5 Update 5 VMWare VirtualCenter 2.5 Update 2 VMWare VirtualCenter 2.5 Update 1 VMWare VirtualCenter 2.5 VMWare VirtualCenter 2.0.2 Update 5 VMWare VirtualCenter 2.0.2 Update 4 VMWare VirtualCenter 2.0.2 Update 3 VMWare VirtualCenter 2.0.2 Update 2 VMWare VirtualCenter 2.0.2 Update 1 VMWare ESX Server 3.0.3 ESX303-200910401-BG VMWare ESX Server 3.0.3 ESX303-200905401-SG VMWare ESX Server 3.0.3 ESX303-200812406-BG VMWare ESX Server 3.0.3 VMWare ESX Server 3.5 ESX350-200910401 VMWare ESX Server 3.5 ESX350-200906407 VMWare ESX Server 3.5 ESX350-200904401 VMWare ESX Server 3.5 |
| Not Vulnerable: |
VMWare VirtualCenter 2.5 Update 6 VMWare ESX Server 4.0 ESX400-200912403 |
Discussion
VMware WebAccess '/ui/vmDirect.do' Information Disclosure Vulnerability
VMware WebAccess is prone to an information-disclosure vulnerability.
An attacker may exploit this vulnerability to redirect legitimate user requests to a malicious server. This may allow the attackers to gain access to potentially sensitive information from the requests.
The following applications are vulnerable:
- Virtual Center 2.5 with WebAccess
- Virtual Center 2.0.2 with WebAccess
- ESX 3.5 with WebAccess
- ESX 3.0.3 with WebAccess
This issue was originally published as part of BID 39037 (VMware WebAccess Multiple Vulnerabilities). It is being assigned a new BID to better document the issue.
VMware WebAccess is prone to an information-disclosure vulnerability.
An attacker may exploit this vulnerability to redirect legitimate user requests to a malicious server. This may allow the attackers to gain access to potentially sensitive information from the requests.
The following applications are vulnerable:
- Virtual Center 2.5 with WebAccess
- Virtual Center 2.0.2 with WebAccess
- ESX 3.5 with WebAccess
- ESX 3.0.3 with WebAccess
This issue was originally published as part of BID 39037 (VMware WebAccess Multiple Vulnerabilities). It is being assigned a new BID to better document the issue.
Exploit / POC
VMware WebAccess '/ui/vmDirect.do' Information Disclosure Vulnerability
The attacker may exploit the issue by enticing an unsuspecting WebAccess user to follow a crafted URI.
The attacker may exploit the issue by enticing an unsuspecting WebAccess user to follow a crafted URI.
Solution / Fix
VMware WebAccess '/ui/vmDirect.do' Information Disclosure Vulnerability
Solution:
Updates are available. Please see the references for more information.
VMWare VirtualCenter 2.0.2 Update 4
VMWare VirtualCenter 2.5
VMWare VirtualCenter 2.0.2 Update 1
VMWare VirtualCenter 2.0.2 Update 3
VMWare VirtualCenter 2.5 Update 1
VMWare VirtualCenter 2.0.2 Update 5
VMWare VirtualCenter 2.5 Update 5
VMWare VirtualCenter 2.0.2 Update 2
VMWare ESX Server 3.5
VMWare VirtualCenter 2.5 Update 2
VMWare VirtualCenter 2.0.2
Solution:
Updates are available. Please see the references for more information.
VMWare VirtualCenter 2.0.2 Update 4
-
VMWare VMware Virtual Center 2.5 Update 6
http://downloads.vmware.com/download/download.do?downloadGroup=VC250U6
VMWare VirtualCenter 2.5
-
VMWare VMware Virtual Center 2.5 Update 6
http://downloads.vmware.com/download/download.do?downloadGroup=VC250U6
VMWare VirtualCenter 2.0.2 Update 1
-
VMWare VMware Virtual Center 2.5 Update 6
http://downloads.vmware.com/download/download.do?downloadGroup=VC250U6
VMWare VirtualCenter 2.0.2 Update 3
-
VMWare VMware Virtual Center 2.5 Update 6
http://downloads.vmware.com/download/download.do?downloadGroup=VC250U6
VMWare VirtualCenter 2.5 Update 1
-
VMWare VMware Virtual Center 2.5 Update 6
http://downloads.vmware.com/download/download.do?downloadGroup=VC250U6
VMWare VirtualCenter 2.0.2 Update 5
-
VMWare VMware Virtual Center 2.5 Update 6
http://downloads.vmware.com/download/download.do?downloadGroup=VC250U6
VMWare VirtualCenter 2.5 Update 5
-
VMWare VMware Virtual Center 2.5 Update 6
http://downloads.vmware.com/download/download.do?downloadGroup=VC250U6
VMWare VirtualCenter 2.0.2 Update 2
-
VMWare VMware Virtual Center 2.5 Update 6
http://downloads.vmware.com/download/download.do?downloadGroup=VC250U6
VMWare ESX Server 3.5
-
VMWare ESX350-201003403-SG.zip
http://download3.vmware.com/software/vi/ESX350-201003403-SG.zip
VMWare VirtualCenter 2.5 Update 2
-
VMWare VMware Virtual Center 2.5 Update 6
http://downloads.vmware.com/download/download.do?downloadGroup=VC250U6
VMWare VirtualCenter 2.0.2
-
VMWare VMware Virtual Center 2.5 Update 6
http://downloads.vmware.com/download/download.do?downloadGroup=VC250U6
References
VMware WebAccess '/ui/vmDirect.do' Information Disclosure Vulnerability
References:
References: