Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2014-4200

Опубликовано: 28 авг. 2014
Источник: nvd
CVSS2: 4.7
EPSS Низкий

Описание

vm-support 0.88 in VMware Tools, as distributed with VMware Workstation through 10.0.3 and other products, uses 0644 permissions for the vm-support archive, which allows local users to obtain sensitive information by extracting files from this archive.

Уязвимые конфигурации

Конфигурация 1

Одно из

cpe:2.3:a:vmware:tools:*:*:*:*:*:*:*:*
cpe:2.3:a:vmware:vm-support:0.88:*:*:*:*:*:*:*
cpe:2.3:a:vmware:workstation:*:*:*:*:*:*:*:*
Версия до 10.0.3 (включая)
cpe:2.3:a:vmware:workstation:10.0:*:*:*:*:*:*:*
cpe:2.3:a:vmware:workstation:10.0.1:*:*:*:*:*:*:*
cpe:2.3:a:vmware:workstation:10.0.2:*:*:*:*:*:*:*

EPSS

Процентиль: 12%
0.00041
Низкий

4.7 Medium

CVSS2

Дефекты

CWE-264

Связанные уязвимости

redhat
больше 11 лет назад

vm-support 0.88 in VMware Tools, as distributed with VMware Workstation through 10.0.3 and other products, uses 0644 permissions for the vm-support archive, which allows local users to obtain sensitive information by extracting files from this archive.

debian
больше 11 лет назад

vm-support 0.88 in VMware Tools, as distributed with VMware Workstatio ...

github
больше 3 лет назад

vm-support 0.88 in VMware Tools, as distributed with VMware Workstation through 10.0.3 and other products, uses 0644 permissions for the vm-support archive, which allows local users to obtain sensitive information by extracting files from this archive.

EPSS

Процентиль: 12%
0.00041
Низкий

4.7 Medium

CVSS2

Дефекты

CWE-264