Vulnerability Details CVE-2006-3589
vmware-config.pl in VMware for Linux, ESX Server 2.x, and Infrastructure 3 does not check the return code from a Perl chmod function call, which might cause an SSL key file to be created with an unsafe umask that allows local users to read or modify the SSL key.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.001
EPSS Ranking 21.2%
CVSS Severity
CVSS v2 Score 3.6
Products affected by CVE-2006-3589
-
cpe:2.3:a:vmware:infrastructure:3
-
cpe:2.3:a:vmware:player:-
-
cpe:2.3:a:vmware:player:1.0
-
cpe:2.3:a:vmware:player:1.0.0
-
cpe:2.3:a:vmware:player:1.0.1
-
cpe:2.3:a:vmware:player:1.0.2
-
cpe:2.3:a:vmware:player:1.0.3
-
cpe:2.3:a:vmware:player:1.0.4
-
cpe:2.3:a:vmware:player:1.0.5
-
cpe:2.3:a:vmware:player:1.0.5_build_56455
-
cpe:2.3:a:vmware:player:1.0.6
-
cpe:2.3:a:vmware:player:1.0.7
-
cpe:2.3:a:vmware:player:1.0.8
-
cpe:2.3:a:vmware:player:1.0.9
-
cpe:2.3:a:vmware:player:2.0
-
cpe:2.3:a:vmware:player:2.0.1
-
cpe:2.3:a:vmware:player:2.0.1_build_55017
-
cpe:2.3:a:vmware:player:2.0.2
-
cpe:2.3:a:vmware:player:2.0.3
-
cpe:2.3:a:vmware:player:2.0.4
-
cpe:2.3:a:vmware:player:2.0.5
-
cpe:2.3:a:vmware:player:2.5
-
cpe:2.3:a:vmware:player:2.5.1
-
cpe:2.3:a:vmware:player:2.5.2
-
cpe:2.3:a:vmware:player:2.5.3
-
cpe:2.3:a:vmware:player:2.5.4
-
cpe:2.3:a:vmware:player:2.5.5
-
cpe:2.3:a:vmware:player:3.0
-
cpe:2.3:a:vmware:player:3.0.1
-
cpe:2.3:a:vmware:player:3.1
-
cpe:2.3:a:vmware:player:3.1.0.12623
-
cpe:2.3:a:vmware:player:3.1.1
-
cpe:2.3:a:vmware:player:3.1.2
-
cpe:2.3:a:vmware:player:3.1.3
-
cpe:2.3:a:vmware:player:3.1.4
-
cpe:2.3:a:vmware:player:3.1.4.16648
-
cpe:2.3:a:vmware:player:3.1.5
-
cpe:2.3:a:vmware:player:3.1.6
-
cpe:2.3:a:vmware:player:4.0
-
cpe:2.3:a:vmware:player:4.0.0.18997
-
cpe:2.3:a:vmware:player:4.0.1
-
cpe:2.3:a:vmware:player:4.0.2
-
cpe:2.3:a:vmware:player:4.0.3
-
cpe:2.3:a:vmware:player:4.0.4
-
cpe:2.3:a:vmware:player:4.0.5
-
cpe:2.3:a:vmware:player:4.0.6
-
cpe:2.3:a:vmware:player:5.0
-
cpe:2.3:a:vmware:player:5.0.1
-
cpe:2.3:a:vmware:player:5.0.2
-
cpe:2.3:a:vmware:player:7.0
-
cpe:2.3:a:vmware:player:7.1
-
cpe:2.3:a:vmware:player:7.1.1
-
cpe:2.3:a:vmware:player:7.1.2
-
cpe:2.3:a:vmware:server:1.0.1_build_29996
-
cpe:2.3:a:vmware:workstation:5.5.3
-
-
cpe:2.3:o:vmware:esx:2.0.1
-
-
cpe:2.3:o:vmware:esx:2.1.1
-
cpe:2.3:o:vmware:esx:2.1.2
-
-
cpe:2.3:o:vmware:esx:2.5.2