VMware vCenter Chargeback Manager Information Disclosure and Denial of Service Vulnerabilities
BID:52376
Info
VMware vCenter Chargeback Manager Information Disclosure and Denial of Service Vulnerabilities
| Bugtraq ID: | 52376 |
| Class: | Unknown |
| CVE: |
CVE-2012-1472 |
| Remote: | Yes |
| Local: | No |
| Published: | Mar 09 2012 12:00AM |
| Updated: | Mar 09 2012 12:00AM |
| Credit: | Joshua Keyes |
| Vulnerable: |
VMWare vCenter Chargeback Manager 2.0 VMWare vCenter Chargeback Manager 1.6.2 |
| Not Vulnerable: |
VMWare vCenter Chargeback Manager 2.0.1 |
Discussion
VMware vCenter Chargeback Manager Information Disclosure and Denial of Service Vulnerabilities
VMware vCenter Chargeback Manager is prone to an information-disclosure vulnerability and a denial-of-service vulnerability.
Successfully exploiting these issues may allow an unauthenticated remote attacker to obtain files or to crash the affected application, denying service to legitimate users.
vCenter Chargeback Manager versions prior to 2.0.1 are vulnerable.
VMware vCenter Chargeback Manager is prone to an information-disclosure vulnerability and a denial-of-service vulnerability.
Successfully exploiting these issues may allow an unauthenticated remote attacker to obtain files or to crash the affected application, denying service to legitimate users.
vCenter Chargeback Manager versions prior to 2.0.1 are vulnerable.
Exploit / POC
VMware vCenter Chargeback Manager Information Disclosure and Denial of Service Vulnerabilities
Currently we are not aware of any working exploits. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected].
Currently we are not aware of any working exploits. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected].
Solution / Fix
VMware vCenter Chargeback Manager Information Disclosure and Denial of Service Vulnerabilities
Solution:
Updates are available. Please see the references for more information.
Solution:
Updates are available. Please see the references for more information.
References
VMware vCenter Chargeback Manager Information Disclosure and Denial of Service Vulnerabilities
References:
References: