CVE-2007-4058
Absolute path traversal vulnerability in a certain ActiveX control in vielib.dll 2.2.5.42958 in EMC VMware 6.0.0 allows remote attackers to execute arbitrary local programs via a full pathname in the first argument to the StartProcess method.
- Affected products
- Vmware
- Emc Vmware
- = 6.0.0
- Fix
- Available
- CVSS 2.0
- 4.3 MEDIUM
- EPSS
- 22.4% (98th percentile)
- Weakness
- CWE-22
- NVD status
- Modified
- Published
- 2007-07-30
CVE-2007-4058 at NVD
7 known exploits for CVE-2007-4058
Proof-of-concept code and exploit modules indexed by Sploitus
VMware vielib.dll StartProcess command execution
VMware vielib.dll StartProcess command execution
VMware vielib.dll StartProcess command execution
VMware vielib.dll StartProcess command execution
DSquare Exploit Pack: D2SEC_VMVIELIB
DSquare Exploit Pack: D2SEC_VMWARE_VIELIB
VMware Inc 6.0.0 - 'vielib.dll 2.2.5.42958' Remode Code Execution