Vulnerability Details CVE-2005-3619
Cross-site scripting (XSS) vulnerability in the management interface for VMware ESX 2.5.x before 2.5.2 upgrade patch 2, 2.1.x before 2.1.2 upgrade patch 6, and 2.0.x before 2.0.1 upgrade patch 6 allows remote attackers to inject arbitrary web script or HTML via messages that are not sanitized when viewing syslog log files.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.008
EPSS Ranking 72.3%
CVSS Severity
CVSS v2 Score 6.8
Products affected by CVE-2005-3619
-
-
cpe:2.3:o:vmware:esx:2.0.1
-
cpe:2.3:o:vmware:esx:2.1.1
-
cpe:2.3:o:vmware:esx:2.1.2
-
-
cpe:2.3:o:vmware:esx:2.5.2