Vulnerability Description
Untrusted search path vulnerability in VMware vMA 4.x and 5.x before 5.0.0.2 allows local users to gain privileges via a Trojan horse DLL in the current working directory.
CVSS Score
HIGH
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Vmware | Vma | 4.0 |
References
- http://osvdb.org/82276
- http://secunia.com/advisories/49300
- http://secunia.com/advisories/49322
- http://www.securityfocus.com/bid/53697
- http://www.securitytracker.com/id?1027099
- http://www.vmware.com/security/advisories/VMSA-2012-0010.htmlVendor Advisory
- https://exchange.xforce.ibmcloud.com/vulnerabilities/75891
- http://osvdb.org/82276
- http://secunia.com/advisories/49300
- http://secunia.com/advisories/49322
- http://www.securityfocus.com/bid/53697
- http://www.securitytracker.com/id?1027099
- http://www.vmware.com/security/advisories/VMSA-2012-0010.htmlVendor Advisory
- https://exchange.xforce.ibmcloud.com/vulnerabilities/75891
FAQ
What is CVE-2012-2752?
CVE-2012-2752 is a vulnerability with a CVSS score of 7.2 (HIGH). Untrusted search path vulnerability in VMware vMA 4.x and 5.x before 5.0.0.2 allows local users to gain privileges via a Trojan horse DLL in the current working directory.
How severe is CVE-2012-2752?
CVE-2012-2752 has been rated HIGH with a CVSS base score of 7.2/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2012-2752?
Check the references section above for vendor advisories and patch information. Affected products include: Vmware Vma.