CVE-2016-7087: Path Traversal
Published Dec 29, 2016
·Updated
Directory traversal vulnerability in the Connection Server in VMware Horizon View 5.x before 5.3.7, 6.x before 6.2.3, and 7.x before 7.0.1 allows remote attackers to obtain sensitive information via unspecified vectors.
Affected Software
13 affected components
VMware Horizon View=5.0
VMware Horizon View=5.0.1
VMware Horizon View=5.1
VMware Horizon View=5.1.3
VMware Horizon View=5.2.0
VMware Horizon View=5.3
VMware Horizon View=6.0
VMware Horizon View=6.0.2
VMware Horizon View=6.1
VMware Horizon View=6.1.1
VMware Horizon View=6.2
VMware Horizon View=7.0
Microsoft Windows
Remediation
Event History
Dec 29, 2016
CVE Published
via MITRE·09:02 AM
Data Sourced
via MITRE·09:02 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2016-7087?
CVE-2016-7087 is rated as a medium severity vulnerability.
2
How do I fix CVE-2016-7087?
To fix CVE-2016-7087, upgrade to VMware Horizon View version 5.3.7, 6.2.3, or 7.0.1 or later.
3
What type of vulnerability is CVE-2016-7087?
CVE-2016-7087 is a directory traversal vulnerability affecting VMware Horizon View.
4
Which versions of VMware Horizon View are affected by CVE-2016-7087?
CVE-2016-7087 affects VMware Horizon View versions 5.x before 5.3.7, 6.x before 6.2.3, and 7.x before 7.0.1.
5
Can CVE-2016-7087 be exploited remotely?
Yes, CVE-2016-7087 can be exploited by remote attackers to obtain sensitive information.