First published: Wed Dec 19 2012(Updated: )
Multiple directory traversal vulnerabilities in the (1) View Connection Server and (2) View Security Server in VMware View 4.x before 4.6.2 and 5.x before 5.1.2 allow remote attackers to read arbitrary files via unspecified vectors.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
VMware Horizon View | =4.0.0 | |
VMware Horizon View | =4.0.0-u2 | |
VMware Horizon View | =4.5 | |
VMware Horizon View | =4.6.0 | |
VMware Horizon View | =4.6.1 | |
VMware Horizon View | =5.0.0 | |
VMware Horizon View | =5.0.0-u2 | |
VMware Horizon View | =5.0.1 | |
VMware Horizon View | =5.1.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2012-5978 has a high severity rating due to its potential for remote file access.
To fix CVE-2012-5978, update VMware View to version 4.6.2 or 5.1.2 or later.
CVE-2012-5978 affects VMware View versions 4.0.0 through 4.6.1 and 5.0.x up to 5.1.1.
Yes, CVE-2012-5978 can be exploited remotely by attackers to read arbitrary files.
The impact of CVE-2012-5978 includes unauthorized access to sensitive files on the vulnerable system.