CVE-2009-0518
lowCVSS v3 Base Score
2.1
AV:L/AC:L/Au:N/C:P/I:N/A:N
EPSS Score
0.1%
Exploitation probability in 30 days
Top 83% most likely to be exploited
Attack Characteristics
Attack Vector
Local
Attack Complexity
Low
Confidentiality
P
Integrity
None
Availability
None
Vulnerability Report
Generated by CyberWatcher
Description
VI Client in VMware VirtualCenter before 2.5 Update 4, VMware ESXi 3.5 before Update 4, and VMware ESX 3.5 before Update 4 retains the VirtualCenter Server password in process memory, which might allow local users to obtain this password.
CWE
CWE-200Affected Products
vmware vmware esxvmware vmware esxivmware vmware virtualcenter