CRLF injection vulnerability in VMware vCenter Server 6.0 before U2 and ESXi 6.0 allows remote attackers to inject arbitrary HTTP headers and conduct HTTP response splitting attacks via unspecified vectors.
| Software | From | Fixed in |
|---|---|---|
| vmware / esxi | 6.0 | 6.0.x |
| vmware / vcenter_server | - | 6.0.x |