CVE-2012-4606
Severity CVSS v4.0:
Pending analysis
Type:
CWE-269
Improper Privilege Management
Publication date:
23/01/2020
Last modified:
21/11/2024
Description
Citrix XenServer 4.1, 6.0, 5.6 SP2, 5.6 Feature Pack 1, 5.6 Common Criteria, 5.6, 5.5, 5.0, and 5.0 Update 3 contains a Local Privilege Escalation Vulnerability which could allow local users with access to a guest operating system to gain elevated privileges.
Impact
Base Score 3.x
7.80
Severity 3.x
HIGH
Base Score 2.0
4.60
Severity 2.0
MEDIUM
Vulnerable products and versions
CPE | From | Up to |
---|---|---|
cpe:2.3:a:citrix:xenserver:4.1:*:*:*:*:*:*:* | ||
cpe:2.3:a:citrix:xenserver:5.0:*:*:*:*:*:*:* | ||
cpe:2.3:a:citrix:xenserver:5.0:update_3:*:*:*:*:*:* | ||
cpe:2.3:a:citrix:xenserver:5.5:*:*:*:*:*:*:* | ||
cpe:2.3:a:citrix:xenserver:5.6:*:*:*:*:*:*:* | ||
cpe:2.3:a:citrix:xenserver:5.6:common_criteria:*:*:*:*:*:* | ||
cpe:2.3:a:citrix:xenserver:5.6:fp1:*:*:*:*:*:* | ||
cpe:2.3:a:citrix:xenserver:5.6:sp2:*:*:*:*:*:* | ||
cpe:2.3:a:citrix:xenserver:6.0:*:*:*:*:*:*:* |
To consult the complete list of CPE names with products and versions, see this page