CVE-2012-1515

Description

VMware ESXi 3.5, 4.0, and 4.1 and ESX 3.5, 4.0, and 4.1 do not properly implement port-based I/O operations, which allows guest OS users to gain guest OS privileges by overwriting memory locations in a read-only memory block associated with the Virtual DOS Machine.

Risk Information

Base Score
5.5
MODERATE
Vector
AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
EPSS Score
Exploitation Probability
0.273

Associated Vulnerability

VulnerabilityOS Platform
Security Update for Windows XP (KB2707511)Windows
Security Update for Windows Server 2003 (KB2707511)Windows
Security Update for Windows 7 for x64-based Systems (KB2709715)Windows
Security Update for Windows 7 for x64-based Systems (KB2709715) for SP1Windows
Security Update for Windows Server 2008 R2 x64 Edition (KB2709715)Windows
Security Update for Windows Server 2008 R2 x64 Edition (KB2709715) for SP1Windows

Patch Details

Click to see the patches provided by ManageEngine for this CVE
Patch IDPatch Description
PATCH-12096Security Update for Windows Server 2003 (KB2707511)
PATCH-12097Security Update for Windows 7 for x64-based Systems (KB2709715)
PATCH-12098Security Update for Windows 7 for x64-based Systems (KB2709715)
PATCH-12099Security Update for Windows Server 2008 R2 x64 Edition (KB2709715)
PATCH-12100Security Update for Windows Server 2008 R2 x64 Edition (KB2709715)

References

https://nvd.nist.gov/vuln/detail/CVE-2023-1234
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2023-1234