9

CVE-2009-1542

The Virtual Machine Monitor (VMM) in Microsoft Virtual PC 2004 SP1, 2007, and 2007 SP1, and Microsoft Virtual Server 2005 R2 SP1, does not enforce CPU privilege-level requirements for all machine instructions, which allows guest OS users to execute arbitrary kernel-mode code and gain privileges within the guest OS via a crafted application, aka "Virtual PC and Virtual Server Privileged Instruction Decoding Vulnerability."

Daten sind bereitgestellt durch National Vulnerability Database (NVD)
MicrosoftVirtual Pc Version2004 Updatesp1
MicrosoftVirtual Pc Version2007
MicrosoftVirtual Pc Version2007 Editionx64
MicrosoftVirtual Pc Version2007 Updatesp1
MicrosoftVirtual Server Version2005 Updater2_sp1
MicrosoftVirtual Server Version2005 Updater2_sp1 Editionx64
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 18.62% 0.947
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
nvd@nist.gov 9 8 10
AV:N/AC:L/Au:S/C:C/I:C/A:C