CVE-2003-1291: High severity VMware ESX vulnerability
VMware ESX Server 1.5.2 before Patch 4 allows local users to execute arbitrary programs as root via certain modified VMware ESX Server environment variables.
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade
VMware ESX Server 1.5.2to a version that resolves this vulnerability.Patch Patch 4
Event History
Frequently Asked Questions
What is the severity of CVE-2003-1291?
CVE-2003-1291 is considered a moderate severity vulnerability due to its potential to allow local users to execute arbitrary programs as root.
How do I fix CVE-2003-1291?
To fix CVE-2003-1291, upgrade VMware ESX Server to version 1.5.2 Patch 4 or later.
Who is affected by CVE-2003-1291?
CVE-2003-1291 affects local users of VMware ESX Server versions 1.5.2 Patch 1, Patch 2, and Patch 3.
What is the attack vector for CVE-2003-1291?
The attack vector for CVE-2003-1291 is local access, where a user can manipulate specific environment variables.
What are the consequences of exploiting CVE-2003-1291?
Exploiting CVE-2003-1291 can allow an attacker to gain root access, potentially leading to system compromise.