Lucene search

K
cveMitreCVE-2011-2145
HistoryJun 06, 2011 - 7:55 p.m.

CVE-2011-2145

2011-06-0619:55:02
CWE-264
mitre
web.nvd.nist.gov
56
cve-2011-2145
vmware
hgfs
guest os
arbitrary files
security vulnerability
nvd

CVSS2

6.3

Attack Vector

LOCAL

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

NONE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:L/AC:M/Au:N/C:N/I:C/A:C

AI Score

6.4

Confidence

Low

EPSS

0.001

Percentile

26.7%

mount.vmhgfs in the VMware Host Guest File System (HGFS) in VMware Workstation 7.1.x before 7.1.4, VMware Player 3.1.x before 3.1.4, VMware Fusion 3.1.x before 3.1.3, VMware ESXi 3.5 through 4.1, and VMware ESX 3.0.3 through 4.1, when a Solaris or FreeBSD guest OS is used, allows guest OS users to modify arbitrary guest OS files via unspecified vectors, related to a “procedural error.”

Affected configurations

Nvd
Node
vmwareesxMatch3.0.3
OR
vmwareesxMatch3.5
OR
vmwareesxMatch4.0
OR
vmwareesxMatch4.1
OR
vmwareesxiMatch3.5
OR
vmwareesxiMatch4.0
OR
vmwareesxiMatch4.1
OR
vmwarefusionMatch3.1
OR
vmwarefusionMatch3.1.1
OR
vmwarefusionMatch3.1.2
OR
vmwareplayerMatch3.1
OR
vmwareplayerMatch3.1.1
OR
vmwareplayerMatch3.1.2
OR
vmwareplayerMatch3.1.3
OR
vmwareworkstationMatch7.1.1
OR
vmwareworkstationMatch7.1.2
OR
vmwareworkstationMatch7.1.3
AND
freebsdfreebsd
OR
oraclesolaris
VendorProductVersionCPE
vmwareesx3.0.3cpe:2.3:a:vmware:esx:3.0.3:*:*:*:*:*:*:*
vmwareesx3.5cpe:2.3:a:vmware:esx:3.5:*:*:*:*:*:*:*
vmwareesx4.0cpe:2.3:a:vmware:esx:4.0:*:*:*:*:*:*:*
vmwareesx4.1cpe:2.3:a:vmware:esx:4.1:*:*:*:*:*:*:*
vmwareesxi3.5cpe:2.3:a:vmware:esxi:3.5:*:*:*:*:*:*:*
vmwareesxi4.0cpe:2.3:a:vmware:esxi:4.0:*:*:*:*:*:*:*
vmwareesxi4.1cpe:2.3:a:vmware:esxi:4.1:*:*:*:*:*:*:*
vmwarefusion3.1cpe:2.3:a:vmware:fusion:3.1:*:*:*:*:*:*:*
vmwarefusion3.1.1cpe:2.3:a:vmware:fusion:3.1.1:*:*:*:*:*:*:*
vmwarefusion3.1.2cpe:2.3:a:vmware:fusion:3.1.2:*:*:*:*:*:*:*
Rows per page:
1-10 of 191

CVSS2

6.3

Attack Vector

LOCAL

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

NONE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:L/AC:M/Au:N/C:N/I:C/A:C

AI Score

6.4

Confidence

Low

EPSS

0.001

Percentile

26.7%