PoC Index

CVE-2006-3547

MEDIUM 5.5EPSS 0.9%

EMC VMware Player allows user-assisted attackers to cause a denial of service (unrecoverable application failure) via a long value of the ide1:0.fileName parameter in the .vmx file of a virtual machine. NOTE: third parties have disputed this issue, saying that write access to the .vmx file enables other ways of stopping the virtual machine, so no privilege boundaries are crossed

CVSS v3.1
5.5 MEDIUMCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
CVSS v2.0
2.6 LOWAV:N/AC:H/Au:N/C:N/I:N/A:P
EPSS
0.87% chance of exploitation in the next 30 days, 56th percentile
Published
2006-07-13
Updated
2025-01-17

Proof-of-concept exploits (3)

References

Related