Apache CloudStack prior to 4.5.2 does not properly preserve VNC passwords when migrating KVM virtual machines, which allows remote malicious users to gain access by connecting to the VNC server.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
apache cloudstack |