VulnerabilityModified
CVE-2006-6410
Buffer overflow in an ActiveX control in VMWare 5.5.1 allows local users to execute arbitrary code via a long VmdbDb parameter to the Initialize function.
MEDIUM 4.6EPSS 1.38%
Does this matter?
Lower severity and a low EPSS score (1.38%). Track it; it rarely justifies an emergency change on its own.
Description
Buffer overflow in an ActiveX control in VMWare 5.5.1 allows local users to execute arbitrary code via a long VmdbDb parameter to the Initialize function.
- CVSS 2.0
- 4.6 MEDIUMAV:L/AC:L/Au:N/C:P/I:P/A:P
- EPSS
- 1.38% probability · 71th percentile
- CISA KEV
- Not listed
- Affected
- vmware/workstation
- Source
- cve@mitre.org
References
- http://securityreason.com/securityalert/2008
- http://www.open-security.org/advisories/17Vendor Advisory
- http://www.securityfocus.com/archive/1/452746/100/100/threaded
- http://www.securityfocus.com/archive/1/452775/100/100/threaded
- http://www.securityfocus.com/bid/19732
- https://www.exploit-db.com/exploits/2264
- http://securityreason.com/securityalert/2008
- http://www.open-security.org/advisories/17Vendor Advisory
- http://www.securityfocus.com/archive/1/452746/100/100/threaded
- http://www.securityfocus.com/archive/1/452775/100/100/threaded
- http://www.securityfocus.com/bid/19732
- https://www.exploit-db.com/exploits/2264
Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.