CVE-2012-5978: Path Traversal
Published Dec 19, 2012
·Updated
Multiple directory traversal vulnerabilities in the (1) View Connection Server and (2) View Security Server in VMware View 4.x before 4.6.2 and 5.x before 5.1.2 allow remote attackers to read arbitrary files via unspecified vectors.
Affected Software
9 affected components
VMware View=4.0.0
VMware View=4.0.0-u2
VMware View=4.5
VMware View=4.6.0
VMware View=4.6.1
VMware View=5.0.0
VMware View=5.0.0-u2
VMware View=5.0.1
VMware View=5.1.0
Event History
Dec 19, 2012
CVE Published
via MITRE·11:00 AM
Data Sourced
via MITRE·11:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2012-5978?
CVE-2012-5978 has a high severity rating due to its potential for remote file access.
2
How do I fix CVE-2012-5978?
To fix CVE-2012-5978, update VMware View to version 4.6.2 or 5.1.2 or later.
3
What are the affected versions for CVE-2012-5978?
CVE-2012-5978 affects VMware View versions 4.0.0 through 4.6.1 and 5.0.x up to 5.1.1.
4
Can CVE-2012-5978 be exploited remotely?
Yes, CVE-2012-5978 can be exploited remotely by attackers to read arbitrary files.
5
What is the impact of CVE-2012-5978?
The impact of CVE-2012-5978 includes unauthorized access to sensitive files on the vulnerable system.