Lucene search

K
cve[email protected]CVE-2007-5023
HistorySep 21, 2007 - 7:17 p.m.

CVE-2007-5023

2007-09-2119:17:00
CWE-264
web.nvd.nist.gov
23
cve-2007-5023
emc vmware workstation
unquoted path vulnerability
nvd
security
privilege escalation

6.9 Medium

CVSS2

Attack Vector

LOCAL

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:L/AC:M/Au:N/C:C/I:C/A:C

6.7 Medium

AI Score

Confidence

Low

0.0004 Low

EPSS

Percentile

5.1%

Unquoted Windows search path vulnerability in EMC VMware Workstation before 5.5.5 Build 56455 and 6.x before 6.0.1 Build 55017, Player before 1.0.5 Build 56455 and Player 2 before 2.0.1 Build 55017, ACE before 1.0.3 Build 54075, and Server before 1.0.4 Build 56528 allows local users to gain privileges via unspecified vectors, possibly involving a malicious “program.exe” file in the C: folder.

Affected configurations

NVD
Node
vmwareaceRange1.01.0.3
OR
vmwareplayerRange1.0.01.0.5
OR
vmwareplayerRange2.02.0.1
OR
vmwareserverRange1.01.0.4
OR
vmwareworkstationRange55.5.5
OR
vmwareworkstationRange6.06.0.1
Node
canonicalubuntu_linuxMatch6.06lts
OR
canonicalubuntu_linuxMatch6.10
OR
canonicalubuntu_linuxMatch7.04

6.9 Medium

CVSS2

Attack Vector

LOCAL

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:L/AC:M/Au:N/C:C/I:C/A:C

6.7 Medium

AI Score

Confidence

Low

0.0004 Low

EPSS

Percentile

5.1%

Related for CVE-2007-5023