CVE Vulnerabilities

CVE-2012-5459

Published: Nov 14, 2012 | Modified: Apr 11, 2025
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
7.9 HIGH
AV:A/AC:M/Au:N/C:C/I:C/A:C
RedHat/V2
RedHat/V3
Ubuntu
root.io logo minimus.io logo echo.ai logo

Untrusted search path vulnerability in VMware Workstation 8.x before 8.0.5 and VMware Player 4.x before 4.0.5 on Windows allows host OS users to gain host OS privileges via a Trojan horse DLL in a system folder.

Affected Software

NameVendorStart VersionEnd Version
PlayerVmware4.0 (including)4.0 (including)
PlayerVmware4.0.0.18997 (including)4.0.0.18997 (including)
PlayerVmware4.0.1 (including)4.0.1 (including)
PlayerVmware4.0.2 (including)4.0.2 (including)
PlayerVmware4.0.3 (including)4.0.3 (including)
PlayerVmware4.0.4 (including)4.0.4 (including)
WorkstationVmware8.0 (including)8.0 (including)
WorkstationVmware8.0.0.18997 (including)8.0.0.18997 (including)
WorkstationVmware8.0.1 (including)8.0.1 (including)
WorkstationVmware8.0.1.27038 (including)8.0.1.27038 (including)
WorkstationVmware8.0.2 (including)8.0.2 (including)
WorkstationVmware8.0.3 (including)8.0.3 (including)
WorkstationVmware8.0.4 (including)8.0.4 (including)

References