VYPR

VMware

by VMware

CVEs (4)

  • CVE-2007-4155Aug 3, 2007
    risk 0.05cvss epss 0.10

    Absolute path traversal vulnerability in a certain ActiveX control in vielib.dll in EMC VMware 6.0.0 allows remote attackers to execute arbitrary local programs via a full pathname in the first two arguments to the (1) CreateProcess or (2) CreateProcessEx method.

  • CVE-2005-0444Feb 14, 2005
    risk 0.00cvss epss 0.00

    VMware before 4.5.2.8848-r5 searches for gdk-pixbuf shared libraries using a path that includes the rrdharan world-writable temporary directory, which allows local users to execute arbitrary code.

  • CVE-2001-1059Jul 30, 2001
    risk 0.00cvss epss 0.00

    VMWare creates a temporary file vmware-log.USERNAME with insecure permissions, which allows local users to read or modify license information.

  • CVE-2000-0090Jan 17, 2000
    risk 0.00cvss epss 0.00

    VMWare 1.1.2 allows local users to cause a denial of service via a symlink attack.