CVE-2008-1392: Critical severity microsoft windows operating system vulnerability
The default configuration of VMware Workstation 6.0.2, VMware Player 2.0.x before 2.0.3, and VMware ACE 2.0.x before 2.0.1 makes the console of the guest OS accessible through anonymous VIX API calls, which has unknown impact and attack vectors.
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of CVE-2008-1392?
CVE-2008-1392 is considered to have an unknown severity due to its potential impact and attack vectors.
How do I fix CVE-2008-1392?
To mitigate CVE-2008-1392, update VMware Workstation to version 6.0.3 or later, VMware Player to version 2.0.3 or later, or VMware ACE to version 2.0.1 or later.
Which VMware products are affected by CVE-2008-1392?
CVE-2008-1392 affects VMware Workstation 6.0.2, VMware Player 2.0.x before 2.0.3, and VMware ACE 2.0.x before 2.0.1.
What vulnerability does CVE-2008-1392 describe?
CVE-2008-1392 describes a vulnerability that allows the console of the guest OS to be accessed through anonymous VIX API calls.
Are there known exploits for CVE-2008-1392?
As of now, there are no publicly documented exploits specifically targeting CVE-2008-1392.