// For flags

CVE-2008-2100

 

Severity Score

7.2
*CVSS v2

Exploit Likelihood

*EPSS

Affected Versions

*CPE

Public Exploits

0
*Multiple Sources

Exploited in Wild

-
*KEV

Decision

-
*SSVC
Descriptions

Multiple buffer overflows in VIX API 1.1.x before 1.1.4 build 93057 on VMware Workstation 5.x and 6.x, VMware Player 1.x and 2.x, VMware ACE 2.x, VMware Server 1.x, VMware Fusion 1.x, VMware ESXi 3.5, and VMware ESX 3.0.1 through 3.5 allow guest OS users to execute arbitrary code on the host OS via unspecified vectors.

Múltiples desbordamientos de buffer en VIX API 1.1.x anteriores a 1.1.4 build 93057 en VMware Workstation 5.x y 6.x, VMware Player 1.x y 2.x, VMware ACE 2.x, VMware Server 1.x, VMware Fusion 1.x, VMware ESXi 3.5, y VMware ESX 3.0.1 hasta la 3.5, permite a los usuarios del sistema huésped, ejecutar código arbitrario en el sistema anfitrión a través de vectores no específicos.

*Credits: N/A
CVSS Scores
Attack Vector
Local
Attack Complexity
Low
Authentication
None
Confidentiality
Complete
Integrity
Complete
Availability
Complete
* Common Vulnerability Scoring System
SSVC
  • Decision:-
Exploitation
-
Automatable
-
Tech. Impact
-
* Organization's Worst-case Scenario
Timeline
  • 2008-05-07 CVE Reserved
  • 2008-06-05 CVE Published
  • 2023-03-07 EPSS Updated
  • 2024-08-07 CVE Updated
  • ---------- Exploited in Wild
  • ---------- KEV Due Date
  • ---------- First Exploit
CWE
  • CWE-119: Improper Restriction of Operations within the Bounds of a Memory Buffer
CAPEC
Affected Vendors, Products, and Versions
Vendor Product Version Other Status
Vendor Product Version Other Status <-- --> Vendor Product Version Other Status
Vmware
Search vendor "Vmware"
Ace
Search vendor "Vmware" for product "Ace"
>= 1.0 <= 1.0.5
Search vendor "Vmware" for product "Ace" and version " >= 1.0 <= 1.0.5"
-
Affected
Vmware
Search vendor "Vmware"
Ace
Search vendor "Vmware" for product "Ace"
>= 2.0 <= 2.0.3
Search vendor "Vmware" for product "Ace" and version " >= 2.0 <= 2.0.3"
-
Affected
Vmware
Search vendor "Vmware"
Esx Server
Search vendor "Vmware" for product "Esx Server"
3.0
Search vendor "Vmware" for product "Esx Server" and version "3.0"
-
Affected
Vmware
Search vendor "Vmware"
Esx Server
Search vendor "Vmware" for product "Esx Server"
3.5
Search vendor "Vmware" for product "Esx Server" and version "3.5"
-
Affected
Vmware
Search vendor "Vmware"
Esxi
Search vendor "Vmware" for product "Esxi"
3.5
Search vendor "Vmware" for product "Esxi" and version "3.5"
-
Affected
Vmware
Search vendor "Vmware"
Fusion
Search vendor "Vmware" for product "Fusion"
<= 1.1.1
Search vendor "Vmware" for product "Fusion" and version " <= 1.1.1"
-
Affected
Vmware
Search vendor "Vmware"
Player
Search vendor "Vmware" for product "Player"
>= 1.0.0 <= 1.0.6
Search vendor "Vmware" for product "Player" and version " >= 1.0.0 <= 1.0.6"
-
Affected
Vmware
Search vendor "Vmware"
Player
Search vendor "Vmware" for product "Player"
>= 2.0 <= 2.0.3
Search vendor "Vmware" for product "Player" and version " >= 2.0 <= 2.0.3"
-
Affected
Vmware
Search vendor "Vmware"
Server
Search vendor "Vmware" for product "Server"
<= 1.0.5
Search vendor "Vmware" for product "Server" and version " <= 1.0.5"
-
Affected
Vmware
Search vendor "Vmware"
Workstation
Search vendor "Vmware" for product "Workstation"
>= 5.5 <= 5.5.6
Search vendor "Vmware" for product "Workstation" and version " >= 5.5 <= 5.5.6"
-
Affected
Vmware
Search vendor "Vmware"
Workstation
Search vendor "Vmware" for product "Workstation"
>= 6.0 <= 6.0.3
Search vendor "Vmware" for product "Workstation" and version " >= 6.0 <= 6.0.3"
-
Affected
Vmware
Search vendor "Vmware"
Esx
Search vendor "Vmware" for product "Esx"
2.5.4
Search vendor "Vmware" for product "Esx" and version "2.5.4"
-
Affected
Vmware
Search vendor "Vmware"
Esx
Search vendor "Vmware" for product "Esx"
2.5.5
Search vendor "Vmware" for product "Esx" and version "2.5.5"
-
Affected
Vmware
Search vendor "Vmware"
Esx
Search vendor "Vmware" for product "Esx"
3.0.0
Search vendor "Vmware" for product "Esx" and version "3.0.0"
-
Affected
Vmware
Search vendor "Vmware"
Esx
Search vendor "Vmware" for product "Esx"
3.0.1
Search vendor "Vmware" for product "Esx" and version "3.0.1"
-
Affected
Vmware
Search vendor "Vmware"
Esx
Search vendor "Vmware" for product "Esx"
3.0.2
Search vendor "Vmware" for product "Esx" and version "3.0.2"
-
Affected
Vmware
Search vendor "Vmware"
Esx
Search vendor "Vmware" for product "Esx"
3.5
Search vendor "Vmware" for product "Esx" and version "3.5"
-
Affected