← Back

CVE-2013-1659

nvd nist
Published: Feb 22, 2013Modified: Apr 29, 2026

JSON object

Loading...
7.6
Vector
AV:N/AC:H/Au:N/C:C/I:C/A:C
Exploitability: 4.9 / Impact: 10.0
Source: NVD

Description

VMware vCenter Server 4.0 before Update 4b, 5.0 before Update 2, and 5.1 before 5.1.0b; VMware ESXi 3.5 through 5.1; and VMware ESX 3.5 through 4.1 do not properly implement the Network File Copy (NFC) protocol, which allows man-in-the-middle attackers to execute arbitrary code or cause a denial of service (memory corruption) by modifying the client-server data stream.

Affected (24)

3 products
Vcenter Server
Vcenter Server Appliance
Esxi
Configuration A
6 vulnerable
Vulnerable SoftwareAffected Versions
Vmware
Version 4.0
Version 4.0 update_1
Version 4.0 update_2
Version 4.0 update_3
Version 4.0 update_4
Version 4.0 update_4a
Configuration B
2 vulnerable
Vulnerable SoftwareAffected Versions
Vmware
Version 5.1.0a
Version 5.1
Configuration C
2 vulnerable
Vulnerable SoftwareAffected Versions
Vmware
Version 5.0
Version 5.0 update_1
Configuration D
6 vulnerable
Vulnerable SoftwareAffected Versions
Vmware
Version 4.1 1
Version 4.1 2
Version 5.0
Version 5.0 1
Version 5.0 2
Version 5.1
Configuration E
8 vulnerable
Vulnerable SoftwareAffected Versions
Vmware
Version 3.5
Version 3.5 1
Version 4.0
Version 4.0 1
Version 4.0 2
Version 4.0 3
Version 4.0 4
Version 4.1

Timeline

No history available yet.