5
CVSSv2

CVE-2015-4057

Published: 21/02/2017 Updated: 09/09/2021
CVSS v2 Base Score: 5 | Impact Score: 2.9 | Exploitability Score: 10
CVSS v3 Base Score: 7.5 | Impact Score: 3.6 | Exploitability Score: 3.9
VMScore: 445
Vector: AV:N/AC:L/Au:N/C:P/I:N/A:N

Vulnerability Summary

The "Plug-in for VMware vCenter" in VCE Vision Intelligent Operations prior to 2.6.5 sends a cleartext HTTP response upon a request for the Settings screen, which allows remote malicious users to discover the admin user password by sniffing the network.

Vulnerable Product Search on Vulmon Subscribe to Product

dell vce vision intelligent operations