Lucene search

K
cve[email protected]CVE-2007-5618
HistoryOct 21, 2007 - 9:17 p.m.

CVE-2007-5618

2007-10-2121:17:00
web.nvd.nist.gov
28
cve-2007-5618
nvd
vmware
windows
search path vulnerability
local users
privileges
malicious programs

7.2 High

CVSS2

Attack Vector

LOCAL

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:L/AC:L/Au:N/C:C/I:C/A:C

9.1 High

AI Score

Confidence

High

0.001 Low

EPSS

Percentile

20.3%

Unquoted Windows search path vulnerability in the Authorization and other services in VMware Player 1.0.x before 1.0.5 and 2.0 before 2.0.1, VMware Server before 1.0.4, and Workstation 5.x before 5.5.5 and 6.x before 6.0.1 might allow local users to gain privileges via malicious programs.

Affected configurations

NVD
Node
vmwareplayerRange1.0.0โ€“1.0.5
OR
vmwareplayerRange2.0โ€“2.0.1
OR
vmwareserverRange<1.0.4
OR
vmwareworkstationRange5.5โ€“5.5.5
OR
vmwareworkstationRange6.0โ€“6.0.1

7.2 High

CVSS2

Attack Vector

LOCAL

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:L/AC:L/Au:N/C:C/I:C/A:C

9.1 High

AI Score

Confidence

High

0.001 Low

EPSS

Percentile

20.3%