First published: Fri Sep 21 2007(Updated: )
EMC VMware Server before 1.0.4 Build 56528 writes passwords in cleartext to unspecified log files, which allows local users to obtain sensitive information by reading these files, a different vulnerability than CVE-2005-3620.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
VMware Server | <=1.0.4_build_56528 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2007-5024 is considered a moderate severity vulnerability due to its potential for exposing sensitive information.
To fix CVE-2007-5024, upgrade to VMware Server version 1.0.4 Build 56528 or later.
CVE-2007-5024 exposes passwords in cleartext within log files, which can be accessed by local users.
CVE-2007-5024 affects local users with access to the log files of EMC VMware Server versions prior to 1.0.4 Build 56528.
CVE-2007-5024 is a local vulnerability, requiring local access to the affected system to exploit.