AUGUST 4, 2026
Live Feed
Back to database
Case File

CVE-2013-1406

HIGH · CVSS 7.2 EPSS 0.97%

Source: NVD + CISA KEV + EPSS (historical backfill) · Published 2013-02-11 · Last synced 2026-08-04

CyberRota Analysis

This is a high severity vulnerability with a CVSS score of 7.2. It affects Windows, VMware, VMWare and other products.

CVE
CVE-2013-1406
Severity
HIGH
CVSS
7.2
EPSS
0.97%
Windows VMware VMWare ESXi

Original NVD Description

The Virtual Machine Communication Interface (VMCI) implementation in vmci.sys in VMware Workstation 8.x before 8.0.5 and 9.x before 9.0.1 on Windows, VMware Fusion 4.1 before 4.1.4 and 5.0 before 5.0.2, VMware View 4.x before 4.6.2 and 5.x before 5.1.2 on Windows, VMware ESXi 4.0 through 5.1, and VMware ESX 4.0 and 4.1 does not properly restrict memory allocation by control code, which allows local users to gain privileges via unspecified vectors.