{ "id": "CVE-2016-2079", "sourceIdentifier": "cve@mitre.org", "published": "2016-07-03T01:59:05.813", "lastModified": "2024-11-21T02:47:46.100", "vulnStatus": "Modified", "cveTags": [], "descriptions": [ { "lang": "en", "value": "VMware NSX Edge 6.1 before 6.1.7 and 6.2 before 6.2.3 and vCNS Edge 5.5 before 5.5.4.3, when the SSL-VPN feature is configured, allow remote attackers to obtain sensitive information via unspecified vectors." }, { "lang": "es", "value": "VMware NSX Edge 6.1 en versiones anteriores a 6.1.7 y 6.2 en versiones anteriores a 6.2.3 y vCNS Edge 5.5 en versiones anteriores a 5.5.4.3, cuando la caracter\u00edstica SSL-VPN est\u00e1 configurada, permiten a atacantes remotos obtener informaci\u00f3n sensible a trav\u00e9s de vectores no especificados." } ], "metrics": { "cvssMetricV30": [ { "source": "nvd@nist.gov", "type": "Primary", "cvssData": { "version": "3.0", "vectorString": "CVSS:3.0/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:N/A:N", "baseScore": 5.9, "baseSeverity": "MEDIUM", "attackVector": "NETWORK", "attackComplexity": "HIGH", "privilegesRequired": "NONE", "userInteraction": "NONE", "scope": "UNCHANGED", "confidentialityImpact": "HIGH", "integrityImpact": "NONE", "availabilityImpact": "NONE" }, "exploitabilityScore": 2.2, "impactScore": 3.6 } ], "cvssMetricV2": [ { "source": "nvd@nist.gov", "type": "Primary", "cvssData": { "version": "2.0", "vectorString": "AV:N/AC:M/Au:N/C:P/I:N/A:N", "baseScore": 4.3, "accessVector": "NETWORK", "accessComplexity": "MEDIUM", "authentication": "NONE", "confidentialityImpact": "PARTIAL", "integrityImpact": "NONE", "availabilityImpact": "NONE" }, "baseSeverity": "MEDIUM", "exploitabilityScore": 8.6, "impactScore": 2.9, "acInsufInfo": false, "obtainAllPrivilege": false, "obtainUserPrivilege": false, "obtainOtherPrivilege": false, "userInteractionRequired": false } ] }, "weaknesses": [ { "source": "nvd@nist.gov", "type": "Primary", "description": [ { "lang": "en", "value": "CWE-200" } ] } ], "configurations": [ { "nodes": [ { "operator": "OR", "negate": false, "cpeMatch": [ { "vulnerable": true, "criteria": "cpe:2.3:a:vmware:nsx_edge:6.1.0:*:*:*:*:*:*:*", "matchCriteriaId": "E84A6BD4-C2A7-4B4E-8566-9E8116A83532" }, { "vulnerable": true, "criteria": "cpe:2.3:a:vmware:nsx_edge:6.1.1:*:*:*:*:*:*:*", "matchCriteriaId": "EAF8EF93-2571-430E-BCBE-394EF0B4897C" }, { "vulnerable": true, "criteria": "cpe:2.3:a:vmware:nsx_edge:6.1.2:*:*:*:*:*:*:*", "matchCriteriaId": "C1014FCA-713D-4667-8801-EE61BEA62D49" }, { "vulnerable": true, "criteria": "cpe:2.3:a:vmware:nsx_edge:6.1.4:*:*:*:*:*:*:*", "matchCriteriaId": "D0C2371A-F497-469E-BAA2-C47808D6B82D" }, { "vulnerable": true, "criteria": "cpe:2.3:a:vmware:nsx_edge:6.1.5:*:*:*:*:*:*:*", "matchCriteriaId": "5A2D6E92-4C93-4E6E-AC77-DBBE6765F986" }, { "vulnerable": true, "criteria": "cpe:2.3:a:vmware:nsx_edge:6.1.6:*:*:*:*:*:*:*", "matchCriteriaId": "A6A9306E-5F2E-4C78-A766-6B9168CF5043" }, { "vulnerable": true, "criteria": "cpe:2.3:a:vmware:nsx_edge:6.2.0:*:*:*:*:*:*:*", "matchCriteriaId": "A8B5DF0C-BE28-4CC3-84B9-0A3736889596" }, { "vulnerable": true, "criteria": "cpe:2.3:a:vmware:nsx_edge:6.2.1:*:*:*:*:*:*:*", "matchCriteriaId": "3375D9F8-37F5-4C56-8E6C-3034C63CC4FA" }, { "vulnerable": true, "criteria": "cpe:2.3:a:vmware:nsx_edge:6.2.2:*:*:*:*:*:*:*", "matchCriteriaId": "74191A3C-A634-4081-A96A-C0695468B9A1" } ] } ] }, { "nodes": [ { "operator": "OR", "negate": false, "cpeMatch": [ { "vulnerable": true, "criteria": "cpe:2.3:a:vmware:vcloud_networking_and_security_edge:5.5.0:*:*:*:*:*:*:*", "matchCriteriaId": "84A4801F-A077-47E2-B2AF-7BA89F834BF3" }, { "vulnerable": true, "criteria": "cpe:2.3:a:vmware:vcloud_networking_and_security_edge:5.5.2.1:*:*:*:*:*:*:*", "matchCriteriaId": "8B6E788C-EC91-4E49-B5FE-FA92BB796ABF" }, { "vulnerable": true, "criteria": "cpe:2.3:a:vmware:vcloud_networking_and_security_edge:5.5.3:*:*:*:*:*:*:*", "matchCriteriaId": "A9797BFE-CD1D-4217-9BE0-559E7C12E152" }, { "vulnerable": true, "criteria": "cpe:2.3:a:vmware:vcloud_networking_and_security_edge:5.5.3.1:*:*:*:*:*:*:*", "matchCriteriaId": "CBD0B720-0C06-40D1-B8F6-F59E5DCCA463" }, { "vulnerable": true, "criteria": "cpe:2.3:a:vmware:vcloud_networking_and_security_edge:5.5.4:*:*:*:*:*:*:*", "matchCriteriaId": "DFA66D20-1AFC-478A-B07F-E261537C426C" }, { "vulnerable": true, "criteria": "cpe:2.3:a:vmware:vcloud_networking_and_security_edge:5.5.4.1:*:*:*:*:*:*:*", "matchCriteriaId": "11EF3FE2-7A08-46E9-8DD6-B0A7AB5BA4B4" }, { "vulnerable": true, "criteria": "cpe:2.3:a:vmware:vcloud_networking_and_security_edge:5.5.4.2:*:*:*:*:*:*:*", "matchCriteriaId": "ECA9A345-686B-4FCE-8562-1A181B4F0975" } ] } ] } ], "references": [ { "url": "http://www.securitytracker.com/id/1036077", "source": "cve@mitre.org" }, { "url": "http://www.vmware.com/security/advisories/VMSA-2016-0007.html", "source": "cve@mitre.org", "tags": [ "Patch", "Vendor Advisory" ] }, { "url": "http://www.securitytracker.com/id/1036077", "source": "af854a3a-2127-422b-91ae-364da2661108" }, { "url": "http://www.vmware.com/security/advisories/VMSA-2016-0007.html", "source": "af854a3a-2127-422b-91ae-364da2661108", "tags": [ "Patch", "Vendor Advisory" ] } ] }