Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2012-5458

Опубликовано: 14 нояб. 2012
Источник: nvd
CVSS2: 8.3
EPSS Низкий

Описание

VMware Workstation 8.x before 8.0.5 and VMware Player 4.x before 4.0.5 on Windows use weak permissions for unspecified process threads, which allows host OS users to gain host OS privileges via a crafted application.

Уязвимые конфигурации

Конфигурация 1

Одновременно

Одно из

cpe:2.3:a:vmware:player:4.0:*:*:*:*:*:*:*
cpe:2.3:a:vmware:player:4.0.0.18997:*:*:*:*:*:*:*
cpe:2.3:a:vmware:player:4.0.1:*:*:*:*:*:*:*
cpe:2.3:a:vmware:player:4.0.2:*:*:*:*:*:*:*
cpe:2.3:a:vmware:player:4.0.3:*:*:*:*:*:*:*
cpe:2.3:a:vmware:player:4.0.4:*:*:*:*:*:*:*
cpe:2.3:a:vmware:workstation:8.0:*:*:*:*:*:*:*
cpe:2.3:a:vmware:workstation:8.0.0.18997:*:*:*:*:*:*:*
cpe:2.3:a:vmware:workstation:8.0.1:*:*:*:*:*:*:*
cpe:2.3:a:vmware:workstation:8.0.1.27038:*:*:*:*:*:*:*
cpe:2.3:a:vmware:workstation:8.0.2:*:*:*:*:*:*:*
cpe:2.3:a:vmware:workstation:8.0.3:*:*:*:*:*:*:*
cpe:2.3:a:vmware:workstation:8.0.4:*:*:*:*:*:*:*
cpe:2.3:o:microsoft:windows:*:*:*:*:*:*:*:*

EPSS

Процентиль: 35%
0.00143
Низкий

8.3 High

CVSS2

Дефекты

CWE-264

Связанные уязвимости

github
больше 3 лет назад

VMware Workstation 8.x before 8.0.5 and VMware Player 4.x before 4.0.5 on Windows use weak permissions for unspecified process threads, which allows host OS users to gain host OS privileges via a crafted application.

EPSS

Процентиль: 35%
0.00143
Низкий

8.3 High

CVSS2

Дефекты

CWE-264