Skip to main content

CVE detail

CVE-2012-5978

Multiple directory traversal vulnerabilities in the (1) View Connection Server and (2) View Security Server in VMware View 4.x before 4.6.2 and 5.x before 5.1.2 allow remote attackers to read arbitrary files via unspecified vectors.

CVSS 5.0 · MediumBuzz score 16.0

Buzz score

Why this CVE is surfacing

Buzz score total 16.0

This all-time snapshot uses the same composite formula as Trending across a 30-year evidence window, rather than a current rolling window.

Buzz score components · mention 11.0 · diversity 5.0 · KEV 0.0 · OTX 0.0 · PoC 0.0
Mention score
11.0
2 evidence mentions in the snapshot
Diversity score
5.0
1 sources across 1 categories
KEV score
0.0
No KEV entry observed
OTX score
0.0
0 OTX pulses
PoC score
0.0
0 repos · best confidence N/A
Best PoC traction
0
Maximum stars on a matched PoC repo

Why it matters now

Mention timeline

Total mentions
0
within the 30d window
Peak daily
0
highest bucket

Evidence

Source links by recency

Newest mentions first
2 source links · newest first
  • Just a week after issuing a patch to address a critical directory traversal vulnerability ( CVE-2012-5978 ) in its View server products, VMware on Thursday issued several security fixes that affect multiple product lines.

    newswww.securityweek.comDec 21, 2012, 10:15 AM
  • VMware on Thursday fixed a critical directory traversal vulnerability ( CVE-2012-5978 ) in its View server products, which if exploited, could enable a remote attacker to access arbitrary files from affected View Servers.

    newswww.securityweek.comDec 14, 2012, 9:59 AM

Exploit code

Public exploit repository references

Public PoC repositories are third-party, potentially unsafe artifacts. Treat their code as untrusted and use it only on authorized systems in an isolated, least-privilege environment. cvebuzz does not execute the code or verify that an exploit works.

0 repository references · best confidence N/A · max 0 stars
No public PoC repositories have been matched yet.

Related records

Similar CVEs

6 related CVEs with shared weakness or product evidence
  • CVE-2026-18991

    A security vulnerability has been detected in nanocoai NanoClaw up to 2.0.64. This affects an unknown part of the file container/agent-runner/src/mcp-tools/core.ts of the componen…

    CVSS 5.5 · Medium
    6 mentions
  • CVE-2026-71313

    rclone is a command-line program to sync files and directories to and from different cloud storage providers. From v1.51.0 until v1.75.0, the local backend in backend/local/local.…

    CVSS 6.9 · Medium
    3 mentions
  • CVE-2026-71309

    rclone is a command-line program to sync files and directories to and from different cloud storage providers. From 1.40.0 until 1.75.0, rclone serve restic does not correctly reje…

    CVSS 8.6 · High
    3 mentions
  • CVE-2026-18959

    A flaw has been found in yushine InnoShop up to 0.8.2. Affected by this issue is the function FileManagerController::destroyFiles of the file innopacks/restapi/routes/panel-api.ph…

    CVSS 2.1 · Low
    5 mentions
  • CVE-2026-18953

    Improper limitation of a pathname to a restricted directory in the get_resource tool in Amazon awslabs.aws-transform-mcp-server 0.1.0 through 0.1.4 might allow a context-dependent…

    CVSS 6.3 · Medium
    3 mentions
  • CVE-2026-17556

    A path traversal vulnerability was identified in GitHub Enterprise Server that allowed an unauthenticated attacker to delete arbitrary files and directories on the instance, inclu…

    CVSS 8.8 · High
    5 mentions