imPC@ndo IT

VMware vulnerabilities

956 CVE

CVE-2007-5671
Medium 4.4

HGFS.sys in the VMware Tools package in VMware Workstation 5.x before 5.5.6 build 80404, VMware Player before 1.0.6 build 80404, VMware ACE before 1.0.5 build 79846, VMware Server before 1.0.5 build 80187, and VMware ESX 2.5.4 through 3.0.2 does not properly v…

vmware ace · vmware esx · vmware esx_server · vmware player · and 5 more
0.00EPSS
CVE-2026-22737
Medium 5.9

Use of Java scripting engine enabled (e.g. JRuby, Jython) template views in Spring MVC and Spring WebFlux applications can result in disclosure of content from files outside the configured locations for script template views. This issue affects Spring Framewor…

vmware spring_framework
0.00EPSS
CVE-2023-20871
High 7.8

VMware Fusion contains a local privilege escalation vulnerability. A malicious actor with read/write access to the host operating system can elevate privileges to gain root access to the host operating system.

vmware fusion
0.00EPSS
CVE-2018-6964
High 7.8

VMware Horizon Client for Linux (4.x before 4.8.0 and prior) contains a local privilege escalation vulnerability due to insecure usage of SUID binary. Successful exploitation of this issue may allow unprivileged users to escalate their privileges to root on a …

vmware horizon_client
0.00EPSS
CVE-2017-4925
Medium 5.5

VMware ESXi 6.5 without patch ESXi650-201707101-SG, ESXi 6.0 without patch ESXi600-201706101-SG, ESXi 5.5 without patch ESXi550-201709101-SG, Workstation (12.x before 12.5.3), Fusion (8.x before 8.5.4) contain a NULL pointer dereference vulnerability. This iss…

vmware esxi · vmware fusion · vmware workstation · vmware workstation_pro
0.00EPSS
CVE-2016-7082
High 7.8

VMware Workstation Pro 12.x before 12.5.0 and VMware Workstation Player 12.x before 12.5.0 on Windows, when Cortado ThinPrint virtual printing is enabled, allow guest OS users to execute arbitrary code on the host OS or cause a denial of service (host OS memor…

vmware workstation_player · vmware workstation_pro
0.00EPSS
CVE-2011-1126
Medium 6.9

VMware vmrun, as used in VIX API 1.x before 1.10.3 and VMware Workstation 6.5.x and 7.x before 7.1.4 build 385536 on Linux, might allow local users to gain privileges via a Trojan horse shared library in an unspecified directory.

vmware vix_api · vmware workstation
0.00EPSS
CVE-2003-0631
High 7.2

VMware GSX Server 2.5.1 build 4968 and earlier, and Workstation 4.0 and earlier, allows local users to gain root privileges via certain enivronment variables that are used when launching a virtual machine session.

vmware gsx_server · vmware workstation
0.00EPSS
CVE-2020-4005
High 7.8

VMware ESXi (7.0 before ESXi70U1b-17168206, 6.7 before ESXi670-202011101-SG, 6.5 before ESXi650-202011301-SG) contains a privilege-escalation vulnerability that exists in the way certain system calls are being managed. A malicious actor with privileges within …

vmware cloud_foundation · vmware esxi
0.00EPSS
CVE-2020-3970
Low 3.8

VMware ESXi (7.0 before ESXi_7.0.0-1.20.16321839, 6.7 before ESXi670-202004101-SG and 6.5 before ESXi650-202005401-SG), Workstation (15.x before 15.5.5), and Fusion (11.x before 11.5.5) contain an out-of-bounds read vulnerability in the Shader functionality. A…

vmware cloud_foundation · vmware esxi · vmware fusion · vmware workstation
0.00EPSS
CVE-2017-4950
High 7.0

VMware Workstation and Fusion contain an integer overflow vulnerability in VMware NAT service when IPv6 mode is enabled. This issue may lead to an out-of-bound read which can then be used to execute code on the host in conjunction with other issues. Note: IPv6…

vmware fusion · vmware workstation
0.00EPSS
CVE-2008-2101
Low 2.1

The VMware Consolidated Backup (VCB) command-line utilities in VMware ESX 3.0.1 through 3.0.3 and ESX 3.5 place a password on the command line, which allows local users to obtain sensitive information by listing the process.

vmware esx
0.00EPSS
CVE-2020-3972
Low 3.3

VMware Tools for macOS (11.x.x and prior before 11.1.1) contains a denial-of-service vulnerability in the Host-Guest File System (HGFS) implementation. Successful exploitation of this issue may allow attackers with non-admin privileges on guest macOS virtual m…

vmware tools
0.00EPSS
CVE-2010-2066
Medium 5.5

The mext_check_arguments function in fs/ext4/move_extent.c in the Linux kernel before 2.6.35 allows local users to overwrite an append-only file via a MOVE_EXT ioctl call that specifies this file as a donor.

canonical ubuntu_linux · linux linux_kernel · suse linux_enterprise_high_availability_extension · suse suse_linux_enterprise_desktop · and 2 more
0.00EPSS
CVE-2023-20870
Medium 6.0

VMware Workstation and Fusion contain an out-of-bounds read vulnerability that exists in the functionality for sharing host Bluetooth devices with the virtual machine.

vmware fusion · vmware workstation
0.00EPSS
CVE-2009-2899
Low 2.1

The monitor perl script in the Sybase database plug-in in SpringSource Hyperic HQ before 4.3 allows local users to obtain the database password by listing the process and its arguments.

vmware hyperic_hq
0.00EPSS
CVE-2019-5511
High 8.8

VMware Workstation (15.x before 15.0.3, 14.x before 14.1.6) running on Windows does not handle paths appropriately. Successful exploitation of this issue may allow the path to the VMX executable, on a Windows host, to be hijacked by a non-administrator leading…

vmware workstation
0.00EPSS
CVE-2020-3961
High 7.8

VMware Horizon Client for Windows (prior to 5.4.3) contains a privilege escalation vulnerability due to folder permission configuration and unsafe loading of libraries. A local user on the system where the software is installed may exploit this issue to run co…

vmware horizon_client
0.00EPSS
CVE-2007-5619
High 7.2

Unspecified vulnerability in VMware Server before 1.0.4 causes user passwords to be recorded in cleartext in server logs, which might allow local users to gain privileges.

vmware server
0.00EPSS
CVE-2005-0444
Medium 4.6

VMware before 4.5.2.8848-r5 searches for gdk-pixbuf shared libraries using a path that includes the rrdharan world-writable temporary directory, which allows local users to execute arbitrary code.

vmware workstation
0.00EPSS
CVE-2017-4949
High 7.0

VMware Workstation and Fusion contain a use-after-free vulnerability in VMware NAT service when IPv6 mode is enabled. This issue may allow a guest to execute code on the host. Note: IPv6 mode for VMNAT is not enabled by default.

vmware fusion · vmware workstation
0.00EPSS
CVE-2017-4912
High 7.8

VMware Workstation (12.x prior to 12.5.3) and Horizon View Client (4.x prior to 4.4.0) contain multiple out-of-bounds read vulnerabilities in TrueType Font (TTF) parser in the TPView.dll. On Workstation, this may allow a guest to execute code or perform a Deni…

vmware horizon_view · vmware workstation
0.00EPSS
CVE-2017-4911
High 7.8

VMware Workstation (12.x prior to 12.5.3) and Horizon View Client (4.x prior to 4.4.0) contain multiple out-of-bounds write vulnerabilities in JPEG2000 parser in the TPView.dll. On Workstation, this may allow a guest to execute code or perform a Denial of Serv…

vmware horizon_view · vmware workstation
0.00EPSS
CVE-2017-4910
High 7.8

VMware Workstation (12.x prior to 12.5.3) and Horizon View Client (4.x prior to 4.4.0) contain multiple out-of-bounds read vulnerabilities in JPEG2000 parser in the TPView.dll. On Workstation, this may allow a guest to execute code or perform a Denial of Servi…

vmware horizon_view · vmware workstation
0.00EPSS
CVE-2017-4909
High 7.8

VMware Workstation (12.x prior to 12.5.3) and Horizon View Client (4.x prior to 4.4.0) contain a heap buffer-overflow vulnerability in TrueType Font (TTF) parser in the TPView.dll. On Workstation, this may allow a guest to execute code or perform a Denial of S…

vmware horizon_view · vmware workstation
0.00EPSS