VMware Server before RC1 does not clear user credentials from memory after a console connection is made, which might allow local attackers to gain privileges.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Server | Vmware | 1.0.1_build_29996 (including) | 1.0.1_build_29996 (including) |