Skip to main content

VMware View Connection/Security Server Directory Traversal Vulnerability

Last Update Date: 17 Dec 2012 10:52 Release Date: 17 Dec 2012 4163 Views

RISK: Medium Risk

TYPE: Operating Systems - VM Ware

TYPE: VM Ware

A vulnerability has been identified in VMware View, which can be exploited by malicious people to disclose sensitive information.

 
The vulnerability is caused due to an error within the View Connection Server and View Security Server and can be exploited to disclose arbitrary files via directory traversal attacks.

Impact

  • Information Disclosure

System / Technologies affected

  • VMware View 4.x
  • VMware View 5.x

Solutions

Before installation of the software, please visit the software manufacturer web-site for more details.

  • Update to version 5.1.2 or 4.6.2.

Vulnerability Identifier


Source


Related Link