CVE-2008-1392 PUBLISHED CVSS 10 CRITICAL

The default configuration of VMware Workstation 6.0.2, VMware Player 2.0.x before 2.0.3, and VMware ACE 2.0.x before 2.0.1 makes the console of the guest OS accessible through anonymous VIX API calls, which has unknown impact and attack vectors.

EPSS 0.75% · 73.1th percentile

Risk Scores

CVSS v2.0
10
EPSS Score
0.75%
73.1th percentile

Affected Products

VendorProductVersions
n/an/an/a
vmwareace0
vmwareplayer0
vmwarevmware_workstation6.0.2

Timeline

References

Open in Interactive Console →