cbcvebase.
CVE-2008-4278
published 2008-10-06

CVE-2008-4278: VMware VirtualCenter 2.5 before Update 3 build 119838 on Windows displays a user's password in cleartext when the password contains unspecified special…

PriorityP410low2.1CVSS 2.0
AVLACLAuNCPINAN
EPSS
0.37%
28.8th percentile
VMware VirtualCenter 2.5 before Update 3 build 119838 on Windows displays a user's password in cleartext when the password contains unspecified special characters, which allows physically proximate attackers to steal the password.

Affected

7 ranges
VendorProductVersion rangeFixed in
vmwarevirtualcenter<= 2.5
vmwarevirtualcenter
vmwarevirtualcenter
vmwarevirtualcenter
vmwarevirtualcenter
vmwarevmware_esxi
vmwarevmware_workstation
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.