Vulnerability Name: | CVE-2003-0480 (CCN-12457) | ||||||||
Assigned: | 2003-06-26 | ||||||||
Published: | 2003-06-26 | ||||||||
Updated: | 2016-10-18 | ||||||||
Summary: | VMware Workstation 4.0 for Linux allows local users to overwrite arbitrary files and gain privileges via "symlink manipulation." | ||||||||
CVSS v3 Severity: | 4.0 Medium (CCN CVSS v3.1 Vector: CVSS:3.1/AV:L/AC:H/PR:N/UI:N/S:U/C:N/I:L/A:L)
| ||||||||
CVSS v2 Severity: | 3.7 Low (CVSS v2 Vector: AV:L/AC:H/Au:N/C:P/I:P/A:P)
| ||||||||
Vulnerability Type: | CWE-Other | ||||||||
Vulnerability Consequences: | File Manipulation | ||||||||
References: | Source: CCN Type: BugTraq Mailing List, Thu Jun 26 2003 - 17:08:25 CDT VMware Workstation 4.0: Possible privilege escalation on the host via symlink manipulation Source: MITRE Type: CNA CVE-2003-0480 Source: BUGTRAQ Type: UNKNOWN 20030627 VMware Workstation 4.0: Possible privilege escalation on the host Source: CCN Type: Gentoo Linux Security Announcement 200308-03.1 vmware Source: CCN Type: OSVDB ID: 2222 VMware Workstation Symlink Privilege Escalation Source: CCN Type: Packet Storm Web Site f.c Source: CCN Type: BID-8049 VMware Workstation 4.0 Insecure Temporary File Vulnerability Source: CCN Type: VMware Web site VMware: Enterprise-Class Virtualization Software Source: CCN Type: VMware Support Answer ID 1019 Answer Source: CONFIRM Type: Patch, Vendor Advisory http://www.vmware.com/support/kb/enduser/std_adp.php?p_faqid=1019 Source: XF Type: UNKNOWN vmware-insecure-files-symlink(12457) | ||||||||
Vulnerable Configuration: | Configuration 1: Configuration CCN 1: Denotes that component is vulnerable | ||||||||
BACK |