GuestStealer released for CVE-2009-3373
GuestStealer allows for the stealing of VMware guests from vulnerable hosts based on the Directory Traversal Vulnerability detailed in CVE-2009-3373 and VMSA-2009-0015. GuestStealer was released at ShmooCon 2010 during Tony Flick's 'Stealing Guests…The VMware Way' presentation.
via FYRM Associates, Inc. – Tools.
3 Responses to 'GuestStealer released for CVE-2009-3373'
Subscribe to comments with RSS or TrackBack to 'GuestStealer released for CVE-2009-3373'.
Leave a Reply
You must be logged in to post a comment.











[...] including DarkReading – Tech Insight: Securing The Virtualized Server Environment and The Hacker News Network. While most have been accurate, several early blogs stated that GuestStealer used a cross site [...]
GuestStealer Wrapup « The FYRM Blog
1 Mar 10 at 10:30 pm
NOTE: That’s CVE 2009 3733 – NOT 3373. That’s a problem with the article we quoted. The VMSA reference addresses 2 issues – 1 of which is directory traversal. See the ping-backed reply for more details!
tan
2 Mar 10 at 1:33 am
[...] including DarkReading – Tech Insight: Securing The Virtualized Server Environment and The Hacker News Network. While most have been accurate, several early blogs stated that GuestStealer used a cross site [...]
GuestStealer Wrapup | Portable Digital Video Recorder
2 Mar 10 at 5:38 am