CVE-2008-3698

CWE-2643 documents3 sources
Severity
7.2HIGH
EPSS
0.1%
top 74.03%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedSep 3
Latest updateMay 2

Description

Unspecified vulnerability in the OpenProcess function in VMware Workstation 5.5.x before 5.5.8 build 108000, VMware Workstation 6.0.x before 6.0.5 build 109488, VMware Player 1.x before 1.0.8 build 108000, VMware Player 2.x before 2.0.5 build 109488, VMware ACE 1.x before 1.0.7 build 108880, VMware ACE 2.x before 2.0.5 build 109488, and VMware Server before 1.0.7 build 108231 on Windows allows local host OS users to gain privileges on the host OS via unknown vectors.

CVSS vector

AV:L/AC:L/C:C/I:C/A:CExploitability: 3.9 | Impact: 10.0

Affected Packages4 packages

NVDvmware/player1.0.01.0.8+1
NVDvmware/workstation5.55.5.8+1
NVDvmware/server< 1.0.7
NVDvmware/ace1.01.0.7+1

Patches

🔴Vulnerability Details

2
GHSA
GHSA-qw7g-m46h-fcxw: Unspecified vulnerability in the OpenProcess function in VMware Workstation 52022-05-02
CVEList
CVE-2008-3698: Unspecified vulnerability in the OpenProcess function in VMware Workstation 52008-09-03
CVE-2008-3698 (HIGH CVSS 7.2) | Unspecified vulnerability in the Op | cvebase.io