cbcvebase.
CVE-2008-2097
published 2008-06-05

CVE-2008-2097: Buffer overflow in the openwsman management service in VMware ESXi 3.5 and ESX 3.5 allows remote authenticated users to gain privileges via an "invalid…

PriorityP343critical9CVSS 2.0
AVNACLAuSCCICAC
EPSS
3.89%
89.1th percentile
Buffer overflow in the openwsman management service in VMware ESXi 3.5 and ESX 3.5 allows remote authenticated users to gain privileges via an "invalid Content-Length."

Affected

6 ranges
VendorProductVersion rangeFixed in
vmwareesx
vmwareesxi
vmwarevmware_esxi
vmwarevmware_fusion
vmwarevmware_tools
vmwarevmware_workstation

CVSS provenance

nvdv2.09.0CRITICALAV:N/AC:L/Au:S/C:C/I:C/A:C
vendor_redhat4.6MEDIUM
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.