VMware vCenter CapacityIQ Unspecified Directory Traversal Vulnerability
BID:55808
Info
VMware vCenter CapacityIQ Unspecified Directory Traversal Vulnerability
| Bugtraq ID: | 55808 |
| Class: | Input Validation Error |
| CVE: |
CVE-2012-5051 |
| Remote: | Yes |
| Local: | No |
| Published: | Oct 05 2012 12:00AM |
| Updated: | Oct 05 2012 12:00AM |
| Credit: | Alexander Minozhenko of ERPScan |
| Vulnerable: | |
| Not Vulnerable: | |
Discussion
VMware vCenter CapacityIQ Unspecified Directory Traversal Vulnerability
VMware vCenter CapacityIQ is prone to an unspecified directory-traversal vulnerability because it fails to properly sanitize user-supplied input.
Exploiting this issue may allow an attacker to obtain sensitive information that could aid in further attacks.
VMware vCenter CapacityIQ is prone to an unspecified directory-traversal vulnerability because it fails to properly sanitize user-supplied input.
Exploiting this issue may allow an attacker to obtain sensitive information that could aid in further attacks.
Exploit / POC
VMware vCenter CapacityIQ Unspecified Directory Traversal Vulnerability
Attackers can exploit this issue with a web browser or readily available tools.
Attackers can exploit this issue with a web browser or readily available tools.
Solution / Fix
VMware vCenter CapacityIQ Unspecified Directory Traversal Vulnerability
Solution:
Updates are available. Please see the references for details.
Solution:
Updates are available. Please see the references for details.