CVE-2009-1244

4 documents4 sources
Severity
6.8MEDIUM
EPSS
0.6%
top 29.67%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedApr 13
Latest updateMay 2

Description

Unspecified vulnerability in the virtual machine display function in VMware Workstation 6.5.1 and earlier; VMware Player 2.5.1 and earlier; VMware ACE 2.5.1 and earlier; VMware Server 1.x before 1.0.9 build 156507 and 2.x before 2.0.1 build 156745; VMware Fusion before 2.0.4 build 159196; VMware ESXi 3.5; and VMware ESX 3.0.2, 3.0.3, and 3.5 allows guest OS users to execute arbitrary code on the host OS via unknown vectors, a different vulnerability than CVE-2008-4916.

CVSS vector

AV:L/AC:L/C:C/I:C/A:CExploitability: 3.1 | Impact: 10.0

Affected Packages7 packages

NVDvmware/fusion2.0.3+8
NVDvmware/player2.5.1+16
NVDvmware/workstation6.5.1+34
NVDvmware/esxi3.5
NVDvmware/server11 versions+10

Patches

🔴Vulnerability Details

2
GHSA
GHSA-3pp9-5q74-pq79: Unspecified vulnerability in the virtual machine display function in VMware Workstation 62022-05-02
CVEList
CVE-2009-1244: Unspecified vulnerability in the virtual machine display function in VMware Workstation 62009-04-13

💥Exploits & PoCs

1
Exploit-DB
Easy RM to MP3 Converter - Universal Stack Overflow2009-04-14
CVE-2009-1244 (MEDIUM CVSS 6.8) | Unspecified vulnerability in the vi | cvebase.io