peter bassill · operator
$ cve CVE-2009-3733 JSON

CVE-2009-3733 EXPLOIT

5.0
MEDIUM · CVSS 2.0 · EPSS 83.4% (pctl 100)

Patch early

A public exploit exists.

Description

Directory traversal vulnerability in VMware Server 1.x before 1.0.10 build 203137 and 2.x before 2.0.2 build 203138 on Linux, VMware ESXi 3.5, and VMware ESX 3.0.3 and 3.5 allows remote attackers to read arbitrary files via unspecified vectors.

Scoring

CVSS5.0 (MEDIUM, v2.0)
VectorAV:N/AC:L/Au:N/C:P/I:N/A:N
EPSS83.38% — more likely to be exploited than 100% of all CVEs
WeaknessCWE-22
On CISA KEVno
Public exploityes
Published2009-11-02
Last modified2026-06-16

Affected (4)

VendorProduct
linuxlinux kernel
vmwareesx
vmwareesxi
vmwareserver

Public exploits

References

→ the Explorer  ·  watch your stack  ·  NVD