Lucene search

K
cve[email protected]CVE-2010-0686
HistoryApr 01, 2010 - 7:30 p.m.

CVE-2010-0686

2010-04-0119:30:00
CWE-20
web.nvd.nist.gov
20
vmware
virtualcenter
server
esx
cve-2010-0686
webaccess
proxy server
url forwarding
vulnerability
nvd

7.5 High

CVSS2

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:N/AC:L/Au:N/C:P/I:P/A:P

6.5 Medium

AI Score

Confidence

Low

0.008 Low

EPSS

Percentile

81.7%

WebAccess in VMware VirtualCenter 2.0.2 and 2.5, VMware Server 2.0, and VMware ESX 3.0.3 and 3.5 allows remote attackers to leverage proxy-server functionality to spoof the origin of requests via unspecified vectors, related to a “URL forwarding vulnerability.”

Affected configurations

NVD
Node
vmwarevirtualcenterMatch2.0.2
OR
vmwarevirtualcenterMatch2.5
Node
vmwareserverMatch2.0.0
Node
vmwareesx_serverMatch3.0.3
OR
vmwareesx_serverMatch3.5

7.5 High

CVSS2

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:N/AC:L/Au:N/C:P/I:P/A:P

6.5 Medium

AI Score

Confidence

Low

0.008 Low

EPSS

Percentile

81.7%