3.6

CVE-2006-3589

vmware-config.pl in VMware for Linux, ESX Server 2.x, and Infrastructure 3 does not check the return code from a Perl chmod function call, which might cause an SSL key file to be created with an unsafe umask that allows local users to read or modify the SSL key.

Daten sind bereitgestellt durch National Vulnerability Database (NVD)
VMwareInfrastructure Version3
VMwareServer Version1.0.1_build_29996
VMwareWorkstation Version5.5.3
VMwareEsx Version2.0
VMwareEsx Version2.0.1
VMwareEsx Version2.1
VMwareEsx Version2.1.1
VMwareEsx Version2.1.2
VMwareEsx Version2.5
VMwareEsx Version2.5.2
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 0.07% 0.174
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
nvd@nist.gov 3.6 3.9 4.9
AV:L/AC:L/Au:N/C:P/I:P/A:N