cbcvebase.
CVE-2007-5023
published 2007-09-21

CVE-2007-5023: Unquoted Windows search path vulnerability in EMC VMware Workstation before 5.5.5 Build 56455 and 6.x before 6.0.1 Build 55017, Player before 1.0.5 Build 56455…

PriorityP416medium6.9CVSS 2.0
AVLACMAuNCCICAC
EPSS
0.32%
24.5th percentile
Unquoted Windows search path vulnerability in EMC VMware Workstation before 5.5.5 Build 56455 and 6.x before 6.0.1 Build 55017, Player before 1.0.5 Build 56455 and Player 2 before 2.0.1 Build 55017, ACE before 1.0.3 Build 54075, and Server before 1.0.4 Build 56528 allows local users to gain privileges via unspecified vectors, possibly involving a malicious "program.exe" file in the C: folder.

Affected

9 ranges
VendorProductVersion rangeFixed in
canonicalubuntu_linux
canonicalubuntu_linux
canonicalubuntu_linux
vmwareace1.0 – 1.0.3
vmwareplayer1.0.0 – 1.0.5
vmwareplayer2.0 – 2.0.1
vmwareserver1.0 – 1.0.4
vmwareworkstation5 – 5.5.5
vmwareworkstation6.0 – 6.0.1
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.