Session fixation vulnerability in the vSphere Web Client Server in VMware vCenter Server 5.0 before Update 3 allows remote attackers to hijack web sessions and gain privileges via unspecified vectors.
Weaknesses in this category are related to the management of permissions, privileges, and other security features that are used to perform access control.
Link | Tags |
---|---|
http://osvdb.org/98718 | vdb entry |
https://exchange.xforce.ibmcloud.com/vulnerabilities/88134 | vdb entry |
http://www.securityfocus.com/bid/63218 | vdb entry |
http://www.vmware.com/security/advisories/VMSA-2013-0012.html | vendor advisory |