Vulnerabilities > Vmware > Virtualcenter > 2.0.1

DATE CVE VULNERABILITY TITLE RISK
2008-10-06 CVE-2008-4278 Information Exposure vulnerability in VMWare Virtualcenter
VMware VirtualCenter 2.5 before Update 3 build 119838 on Windows displays a user's password in cleartext when the password contains unspecified special characters, which allows physically proximate attackers to steal the password.
local
low complexity
vmware microsoft CWE-200
2.1
2006-11-21 CVE-2006-5990 Improper Input Validation vulnerability in VMWare Virtualcenter 1.4.1/2.0.1
VMWare VirtualCenter client 2.x before 2.0.1 Patch 1 (Build 33643) and 1.4.x before 1.4.1 Patch 1 (Build 33425), when server certificate verification is enabled, does not verify the server's X.509 certificate when creating an SSL session, which allows remote malicious servers to spoof valid servers via a man-in-the-middle attack.
network
high complexity
vmware CWE-20
4.0