9.3
CVSSv2

CVE-2007-4155

Published: 03/08/2007 Updated: 29/09/2017
CVSS v2 Base Score: 9.3 | Impact Score: 10 | Exploitability Score: 8.6
VMScore: 935
Vector: AV:N/AC:M/Au:N/C:C/I:C/A:C

Vulnerability Summary

Absolute path traversal vulnerability in a certain ActiveX control in vielib.dll in EMC VMware 6.0.0 allows remote malicious users to execute arbitrary local programs via a full pathname in the first two arguments to the (1) CreateProcess or (2) CreateProcessEx method.

Vulnerable Product Search on Vulmon Subscribe to Product

emc vmware 6.0.0

Exploits

: GOODFELLAS Security Research TEAM : : goodfellasshellcodecomar : VmWare Inc version 600 CreateProcess & CreateProcessEx Remode Code Execution Exploit ====================================================================================== Internal ID: VULWAR200707300 ----------- Introduction ------------ vielibdll is a lib ...