CVE-2016-2076
15.04.2016, 14:59
Client Integration Plugin (CIP) in VMware vCenter Server 5.5 U3a, U3b, and U3c and 6.0 before U2; vCloud Director 5.5.5; and vRealize Automation Identity Appliance 6.2.4 before 6.2.4.1 mishandles session content, which allows remote attackers to hijack sessions via a crafted web site.Enginsight
Vendor | Product | Version |
---|---|---|
vmware | vcenter_server | 𝑥 ≤ 6.0 |
vmware | vcenter_server | 5.5:3a |
vmware | vcenter_server | 5.5:3b |
vmware | vcenter_server | 5.5:u3c |
vmware | vcloud_automation_identity_appliance | 6.2.4 |
vmware | vcloud_director | 5.5.5 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration
References