Information Disclosure in VMware vCenter Orchestrator Web Configuration Tool
CVE-2012-1513

Currently unrated

Key Information:

Vendor
Vmware
Vendor
CVE Published:
16 March 2012

Summary

The Web Configuration tool in VMware vCenter Orchestrator allows remote authenticated administrators to access sensitive information by placing vCenter Server passwords within an HTML document. This exposure can lead to unauthorized access and potential misuse of sensitive data. Organizations utilizing affected versions should apply necessary updates to mitigate this information disclosure risk.

References

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.