CVE-2010-1137: XSS
Cross-site scripting (XSS) vulnerability in WebAccess in VMware VirtualCenter 2.0.2 and 2.5 and VMware ESX 3.0.3 and 3.5, and the Server Console in VMware Server 1.0, allows remote attackers to inject arbitrary web script or HTML via the name of a virtual machine.
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of CVE-2010-1137?
CVE-2010-1137 is classified as a medium severity vulnerability due to its potential for exploitation through XSS attacks.
How do I fix CVE-2010-1137?
Fixing CVE-2010-1137 involves applying the latest security updates and patches provided by VMware for the affected products.
What products are affected by CVE-2010-1137?
CVE-2010-1137 affects VMware VirtualCenter versions 2.0.2, 2.5, VMware ESX versions 3.0.3, 3.5, and VMware Server version 1.0.
What type of vulnerability is CVE-2010-1137?
CVE-2010-1137 is a cross-site scripting (XSS) vulnerability that allows attackers to inject arbitrary web scripts or HTML.
Can CVE-2010-1137 be exploited remotely?
Yes, CVE-2010-1137 can be exploited by remote attackers who can craft malicious requests to the affected VMware applications.