Vulnerabilities
Vulnerable Software
Vmware:  >> Vcenter Orchestrator  Security Vulnerabilities
Serialized-object interfaces in VMware vRealize Orchestrator 6.x, vCenter Orchestrator 5.x, vRealize Operations 6.x, vCenter Operations 5.x, and vCenter Application Discovery Manager (vADM) 7.x allow remote attackers to execute arbitrary commands via a crafted serialized Java object, related to the Apache Commons Collections library.
CVSS Score
7.3
EPSS Score
0.021
Published
2015-12-21
The Web Configuration tool in VMware vCenter Orchestrator (vCO) 4.0 before Update 4, 4.1 before Update 2, and 4.2 before Update 1 places the vCenter Server password in an HTML document, which allows remote authenticated administrators to obtain sensitive information by reading this document.
CVSS Score
4.0
EPSS Score
0.004
Published
2012-03-16


Contact Us

Shodan ® - All rights reserved