CVE-2009-3732
high · 10Format string vulnerability in vmware-vmrc.exe build 158248 in VMware Remote Console (aka VMrc) allows remote attackers to execute arbitrary code via unspecified vectors.
10
CVSS
16.2%
EPSS (exploit prob.)
97th
EPSS percentile
2010-04-12
Published
AV:N/AC:L/Au:N/C:C/I:C/A:C
Weaknesses
CWE-134
Affected products
| Vendor | Product | Affected versions |
|---|---|---|
| vmware | ace | >= 2.5.0, < 2.5.4 |
| vmware | ace | 2.6 |
| vmware | player | >= 2.5.0, < 2.5.4 |
| vmware | player | 3.0 |
| vmware | server | >= 2.0.0, <= 2.0.2 |
| vmware | workstation | >= 6.5.0, < 6.5.4 |
| vmware | workstation | 7.0 |
| microsoft | windows | all versions |
Check a specific version with /api/v1/cve/match.
References
- http://archives.neohapsis.com/archives/bugtraq/2010-04/0077.html
- http://archives.neohapsis.com/archives/fulldisclosure/2010-04/0121.html
- http://lists.vmware.com/pipermail/security-announce/2010/000090.html
- http://secunia.com/advisories/39110
- http://security.gentoo.org/glsa/glsa-201209-25.xml
- http://www.vmware.com/security/advisories/VMSA-2010-0007.html
- http://archives.neohapsis.com/archives/bugtraq/2010-04/0077.html
- http://archives.neohapsis.com/archives/fulldisclosure/2010-04/0121.html
- http://lists.vmware.com/pipermail/security-announce/2010/000090.html
- http://secunia.com/advisories/39110
- http://security.gentoo.org/glsa/glsa-201209-25.xml
- http://www.vmware.com/security/advisories/VMSA-2010-0007.html
Query this programmatically:
curl https://evil-db.io/api/v1/cve/CVE-2009-3732