MEDIUM
VMware ESX Server 2.0.x before 2.0.2 and 2.x before 2.5.2 patch 4 stores authentication credentials in base 64 encoded format in the vmware.mui.kid and vmware.mui.sid cookies, which allows attackers to gain privileges by obtaining the cookies using attacks such as cross-site scripting (CVE-2005-3619)
Published Jul 31, 2006
5.0
MEDIUMCVSS 2.0
EPSS 7.19%
Description
Affected products
Remediation
References (7)
Change history (0)
No recorded changes yet.