CVE-2007-4155

EMC VMware 6.0.0 - Path Traversal

Title source: llm

Description

Absolute path traversal vulnerability in a certain ActiveX control in vielib.dll in EMC VMware 6.0.0 allows remote attackers to execute arbitrary local programs via a full pathname in the first two arguments to the (1) CreateProcess or (2) CreateProcessEx method.

Exploits (1)

exploitdb WORKING POC VERIFIED
by callAX · htmlremotewindows
https://www.exploit-db.com/exploits/4245

Scores

EPSS 0.3088
EPSS Percentile 96.7%

Details

Status published
Products (1)
emc/vmware 6.0.0
Published Aug 03, 2007
Tracked Since Feb 18, 2026