Description
Apache CloudStack before 4.5.2 does not properly preserve VNC passwords when migrating KVM virtual machines, which allows remote attackers to gain access by connecting to the VNC server.
Analysis and contextual insights are available on OpenCVE Cloud.
Remediation
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2015-3306 | Apache CloudStack before 4.5.2 does not properly preserve VNC passwords when migrating KVM virtual machines, which allows remote attackers to gain access by connecting to the VNC server. |
References
History
No history.
Status: PUBLISHED
Assigner: redhat
Published:
Updated: 2024-08-06T05:39:32.103Z
Reserved: 2015-04-10T00:00:00.000Z
Link: CVE-2015-3252
No data.
Status : Modified
Published: 2016-02-08T19:59:02.610
Modified: 2026-05-06T22:30:45.220
Link: CVE-2015-3252
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD