Vulnerabilities > CVE-2006-2662 - Unspecified vulnerability in VMWare Server 1.0.1Build29996
Attack vector
LOCAL Attack complexity
LOW Privileges required
NONE Confidentiality impact
PARTIAL Integrity impact
PARTIAL Availability impact
PARTIAL Summary
VMware Server before RC1 does not clear user credentials from memory after a console connection is made, which might allow local attackers to gain privileges.
Vulnerable Configurations
Part | Description | Count |
---|---|---|
Application | 1 |
References
- http://securitytracker.com/id?1016200
- http://www.securityfocus.com/archive/1/435709/100/0/threaded
- http://www.securityfocus.com/bid/18236
- http://www.vmware.com/support/kb/enduser/std_adp.php?p_faqid=2124
- http://www.vupen.com/english/advisories/2006/2104
- https://exchange.xforce.ibmcloud.com/vulnerabilities/26879