This script is Copyright (C) 2008-2015 Tenable Network Security, Inc.
The remote Windows host has an application that is affected by
A VMware product installed on the remote host is affected by multiple
- A heap overflow vulnerability in VMware Host Guest File
System (HGFS), could allow a guest to execute arbitrary
code subject to the privileges of the user running 'vmx'
process. In order to successfully exploit this issue a
folder should be shared on the host system and sharing
should be enabled, which is disabled by default.
- A vulnerability in Virtual Machine Communication
Interface (VMCI), a 'experimental' feature designed for
users building client-server applications, could allow
a guest to execute arbitrary code subject to the
privileges of the user running 'vmx' process. For
successful exploitation of this issue VMCI feature
should be enabled on the host. (CVE-2012-2099)
See also :
Upgrade to :
- VMware Workstation 6.0.4 or higher.
- VMware Player 2.0.4 or higher.
- VMware ACE 2.0.4 or higher.
Risk factor :
Medium / CVSS Base Score : 4.6
CVSS Temporal Score : 3.6
Public Exploit Available : true