Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2014-4200

Опубликовано: 26 авг. 2014
Источник: redhat
CVSS2: 1.9
EPSS Низкий

Описание

vm-support 0.88 in VMware Tools, as distributed with VMware Workstation through 10.0.3 and other products, uses 0644 permissions for the vm-support archive, which allows local users to obtain sensitive information by extracting files from this archive.

Затронутые пакеты

ПлатформаПакетСостояниеРекомендацияРелиз
CloudForms Management Engine 5open-vm-toolsWill not fix
Red Hat Enterprise Linux 7open-vm-toolsFixedRHBA-2015:224619.11.2015

Показывать по

Дополнительная информация

Статус:

Low
Дефект:
CWE-538
https://bugzilla.redhat.com/show_bug.cgi?id=1165900open-vm-tools: vm-support's diagnostics archive created with world-readable permissions

EPSS

Процентиль: 33%
0.00401
Низкий

1.9 Low

CVSS2

Связанные уязвимости

nvd
почти 12 лет назад

vm-support 0.88 in VMware Tools, as distributed with VMware Workstation through 10.0.3 and other products, uses 0644 permissions for the vm-support archive, which allows local users to obtain sensitive information by extracting files from this archive.

debian
почти 12 лет назад

vm-support 0.88 in VMware Tools, as distributed with VMware Workstatio ...

github
около 4 лет назад

vm-support 0.88 in VMware Tools, as distributed with VMware Workstation through 10.0.3 and other products, uses 0644 permissions for the vm-support archive, which allows local users to obtain sensitive information by extracting files from this archive.

EPSS

Процентиль: 33%
0.00401
Низкий

1.9 Low

CVSS2