5
CVSSv2

CVE-2009-4811

Published: 27/04/2010 Updated: 14/02/2024
CVSS v2 Base Score: 5 | Impact Score: 2.9 | Exploitability Score: 10
VMScore: 445
Vector: AV:N/AC:L/Au:N/C:N/I:N/A:P

Vulnerability Summary

VMware Authentication Daemon 1.0 in vmware-authd.exe in the VMware Authorization Service in VMware Workstation 7.0 prior to 7.0.1 build 227600 and 6.5.x prior to 6.5.4 build 246459, VMware Player 3.0 prior to 3.0.1 build 227600 and 2.5.x prior to 2.5.4 build 246459, VMware ACE 2.6 prior to 2.6.1 build 227600 and 2.5.x prior to 2.5.4 build 246459, and VMware Server 2.x allows remote malicious users to cause a denial of service (process crash) via a \x25\x90 sequence in the USER and PASS commands, a related issue to CVE-2009-3707. NOTE: some of these details are obtained from third party information.

Vulnerable Product Search on Vulmon Subscribe to Product

vmware player 3.0.1

vmware player 2.5.4

vmware ace 2.5.2

vmware ace 2.5.1

vmware player 2.5.1

vmware ace 2.6.1

vmware player 3.0

vmware player 2.5.2

vmware workstation 7.0

vmware ace 2.6

vmware workstation 6.5.1

vmware ace 2.5.3

vmware workstation 6.5.4

vmware server 2.0.0

vmware workstation 6.5.0

vmware player 2.5

vmware ace 2.5.4

vmware workstation 7.0.1

vmware server 2.0.1

vmware workstation 6.5.2

vmware ace 2.5.0

vmware workstation 6.5.3

vmware server 2.0.2

vmware player 2.5.3