CVE-2013-5971Vmware Vcenter Server vulnerability

CWE-2643 documents3 sources
Severity
6.8MEDIUMNVD
EPSS
0.5%
top 33.81%
CISA KEV
Not in KEV
Exploit
No known exploits
Affected products
Timeline
PublishedOct 21
Latest updateMay 17

Description

Session fixation vulnerability in the vSphere Web Client Server in VMware vCenter Server 5.0 before Update 3 allows remote attackers to hijack web sessions and gain privileges via unspecified vectors.

CVSS vector

AV:N/AC:M/C:P/I:P/A:PExploitability: 8.6 | Impact: 6.4

Affected Packages1 packages

🔴Vulnerability Details

2
GHSA
GHSA-vr26-xfqg-vcvf: Session fixation vulnerability in the vSphere Web Client Server in VMware vCenter Server 52022-05-17
CVEList
CVE-2013-5971: Session fixation vulnerability in the vSphere Web Client Server in VMware vCenter Server 52013-10-21
CVE-2013-5971 — Vmware Vcenter Server vulnerability | cvebase