Unrated severityNVD Advisory· Published Mar 20, 2008· Updated Jun 16, 2026
CVE-2008-1363
CVE-2008-1363
Description
VMware Workstation 6.0.x before 6.0.3 and 5.5.x before 5.5.6, VMware Player 2.0.x before 2.0.3 and 1.0.x before 1.0.6, VMware ACE 2.0.x before 2.0.1 and 1.0.x before 1.0.5, and VMware Server 1.0.x before 1.0.5 on Windows allow local users to gain privileges via an unspecified manipulation of a config.ini file located in an Application Data folder, which can be used for "hijacking the VMX process."
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
8cpe:2.3:a:vmware:workstation:*:*:*:*:*:*:*:*+ 1 more
- cpe:2.3:a:vmware:workstation:*:*:*:*:*:*:*:*range: >=5.5,<5.5.6
- (no CPE)range: <6.0.3, <5.5.6
Patches
Vulnerability mechanics
References
15- www.securityfocus.com/bid/28276nvdPatchThird Party AdvisoryVDB Entry
- www.vmware.com/security/advisories/VMSA-2008-0005.htmlnvdPatchVendor Advisory
- www.vmware.com/support/ace2/doc/releasenotes_ace2.htmlnvdPatchVendor Advisory
- www.vmware.com/support/player/doc/releasenotes_player.htmlnvdPatchVendor Advisory
- www.vmware.com/support/player2/doc/releasenotes_player2.htmlnvdPatchVendor Advisory
- www.vmware.com/support/server/doc/releasenotes_server.htmlnvdPatchVendor Advisory
- www.vmware.com/support/ws55/doc/releasenotes_ws55.htmlnvdPatchVendor Advisory
- www.vmware.com/support/ws6/doc/releasenotes_ws6.htmlnvdPatchVendor Advisory
- lists.vmware.com/pipermail/security-announce/2008/000008.htmlnvdVendor Advisory
- security.gentoo.org/glsa/glsa-201209-25.xmlnvdThird Party Advisory
- securityreason.com/securityalert/3755nvdThird Party Advisory
- securitytracker.com/idnvdThird Party AdvisoryVDB Entry
- www.securityfocus.com/archive/1/489739/100/0/threadednvdThird Party AdvisoryVDB Entry
- www.vupen.com/english/advisories/2008/0905/referencesnvdThird Party Advisory
- exchange.xforce.ibmcloud.com/vulnerabilities/41252nvdThird Party AdvisoryVDB Entry
News mentions
0No linked articles in our index yet.