First published: Fri Oct 05 2012(Updated: )
Cross-site scripting (XSS) vulnerability in the server in VMware vCenter Operations (aka vCOps) before 5.0.x allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
VMware vRealize Operations | <=1.0.2 | |
VMware vRealize Operations | =1.0.0 | |
VMware vRealize Operations | =1.0.1 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2012-5050 has a medium severity rating due to its potential for cross-site scripting attacks.
To fix CVE-2012-5050, upgrade to VMware vCenter Operations version 5.0.x or later.
CVE-2012-5050 allows remote attackers to inject arbitrary web script or HTML, potentially compromising user data.
CVE-2012-5050 affects VMware vCenter Operations versions 1.0.0, 1.0.1, and up to 1.0.2.
There is no official workaround for CVE-2012-5050; upgrading is the recommended solution.