1.9

CVE-2007-5438

Unspecified vulnerability in a certain ActiveX control in Reconfig.DLL in VMware Workstation 5.5.x before 5.5.8 build 108000, VMware Workstation 6.0.x before 6.0.5 build 109488, VMware Player 1.x before 1.0.8 build 108000, VMware Player 2.x before 2.0.5 build 109488, VMware ACE 1.x before 1.0.7 build 108880, VMware ACE 2.x before 2.0.5 build 109488, and VMware Server before 1.0.7 build 108231 might allow local users to cause a denial of service to the Virtual Disk Mount Service (vmount2.exe), related to the ConnectPopulatedDiskEx function.

Data is provided by the National Vulnerability Database (NVD)
VMwareAce Version1.0
VMwareAce Version1.0.1
VMwareAce Version1.0.2
VMwareAce Version1.0.3
VMwareAce Version1.0.4
VMwareAce Version1.0.5
VMwareAce Version1.0.6
VMwareAce Version1.0.7
VMwareAce Version2.0
VMwareAce Version2.0.1
VMwareAce Version2.0.2
VMwareAce Version2.0.3
VMwareAce Version2.0.4
VMwareAce Version2.0.5
VMwareVmware Player Version1.0.0
VMwareVmware Player Version1.0.1
VMwareVmware Player Version1.0.2
VMwareVmware Player Version1.0.3
VMwareVmware Player Version1.0.4
VMwareVmware Player Version1.0.5
VMwareVmware Player Version1.0.6
VMwareVmware Player Version1.0.7
VMwareVmware Player Version1.0.8
VMwareVmware Player Version2.0
VMwareVmware Player Version2.0.1
VMwareVmware Player Version2.0.2
VMwareVmware Player Version2.0.3
VMwareVmware Player Version2.0.4
VMwareVmware Player Version2.0.5
VMwareVmware Server Version <= 1.0.7
VMwareVmware Server Version1.0
VMwareVmware Server Version1.0.1
VMwareVmware Server Version1.0.2
VMwareVmware Server Version1.0.3
VMwareVmware Server Version1.0.4
VMwareVmware Server Version1.0.5
VMwareVmware Server Version1.0.6
VMwareVmware Workstation Version5.5.0
VMwareVmware Workstation Version5.5.1
VMwareVmware Workstation Version5.5.2
VMwareVmware Workstation Version5.5.3
VMwareVmware Workstation Version5.5.4
VMwareVmware Workstation Version5.5.5
VMwareVmware Workstation Version5.5.6
VMwareVmware Workstation Version5.5.7
VMwareVmware Workstation Version5.5.8
VMwareVmware Workstation Version6.0
VMwareVmware Workstation Version6.0.1
VMwareVmware Workstation Version6.0.2
VMwareVmware Workstation Version6.0.3
VMwareVmware Workstation Version6.0.4
VMwareVmware Workstation Version6.0.5
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
EPSS Metriken
Type Source Score Percentile
EPSS FIRST.org 0.1% 0.287
CVSS Metriken
Source Base Score Exploit Score Impact Score Vector string
nvd@nist.gov 1.9 3.4 2.9
AV:L/AC:M/Au:N/C:N/I:N/A:P
CWE-20 Improper Input Validation

The product receives input or data, but it does not validate or incorrectly validates that the input has the properties that are required to process the data safely and correctly.