CVE-2014-8370

medium VMware
CVSS v3 Base Score
6.4
AV:N/AC:L/Au:N/C:N/I:P/A:P
EPSS Score
1.2%
Exploitation probability in 30 days
Top 21% most likely to be exploited
Attack Characteristics
Attack Vector
Network
Attack Complexity
Low
Confidentiality
None
Integrity
P
Availability
P
Published: January 29, 2015 (4123 days ago)
Last Modified: May 6, 2026
Vendor: VMware
Source: NVD

Description

VMware Workstation 10.x before 10.0.5, VMware Player 6.x before 6.0.5, VMware Fusion 6.x before 6.0.5, and VMware ESXi 5.0 through 5.5 allow host OS users to gain host OS privileges or cause a denial of service (arbitrary write to a file) by modifying a configuration file.

CWE

CWE-264

Affected Products

vmware playervmware fusionvmware workstationvmware esxi

References