7.6
CVSSv2

CVE-2013-1659

Published: 22/02/2013 Updated: 25/02/2013
CVSS v2 Base Score: 7.6 | Impact Score: 10 | Exploitability Score: 4.9
VMScore: 676
Vector: AV:N/AC:H/Au:N/C:C/I:C/A:C

Vulnerability Summary

VMware vCenter Server 4.0 before Update 4b, 5.0 before Update 2, and 5.1 prior to 5.1.0b; VMware ESXi 3.5 up to and including 5.1; and VMware ESX 3.5 up to and including 4.1 do not properly implement the Network File Copy (NFC) protocol, which allows man-in-the-middle malicious users to execute arbitrary code or cause a denial of service (memory corruption) by modifying the client-server data stream.

Vulnerable Product Search on Vulmon Subscribe to Product

vmware vcenter server 4.0

vmware vcenter server appliance 5.1.0a

vmware vcenter server appliance 5.1

vmware vcenter server 5.0

vmware esxi 5.1

vmware esxi 5.0

vmware esxi 4.0

vmware esxi 4.1

vmware esxi 3.5