CVE-2006-2662
VMware Server before RC1 does not clear user credentials from memory after a console connection is made, which might allow local attackers to gain privileges.
Date published : 2006-06-02
http://www.securityfocus.com/bid/18236
http://www.securityfocus.com/archive/1/435709/100/0/threaded