CVE-2008-2101Sensitive Information Exposure in Vmware ESX

Severity
2.1LOWNVD
EPSS
0.1%
top 80.88%
CISA KEV
Not in KEV
Exploit
No known exploits
Affected products
Timeline
PublishedSep 3
Latest updateMay 1

Description

The VMware Consolidated Backup (VCB) command-line utilities in VMware ESX 3.0.1 through 3.0.3 and ESX 3.5 place a password on the command line, which allows local users to obtain sensitive information by listing the process.

CVSS vector

AV:L/AC:L/C:P/I:N/A:NExploitability: 3.9 | Impact: 2.9

Affected Packages1 packages

NVDvmware/esx4 versions+3

🔴Vulnerability Details

2
GHSA
GHSA-mfg6-9jcc-433j: The VMware Consolidated Backup (VCB) command-line utilities in VMware ESX 32022-05-01
CVEList
CVE-2008-2101: The VMware Consolidated Backup (VCB) command-line utilities in VMware ESX 32008-09-03
CVE-2008-2101 — Sensitive Information Exposure | cvebase