imPC@ndo IT

VMware vulnerabilities

956 CVE

CVE-2022-31008
Medium 5.5

RabbitMQ is a multi-protocol messaging and streaming broker. In affected versions the shovel and federation plugins perform URI obfuscation in their worker (link) state. The encryption key used to encrypt the URI was seeded with a predictable secret. This mean…

broadcom rabbitmq_server · vmware rabbitmq
0.00EPSS
CVE-2022-31661
High 7.8

VMware Workspace ONE Access, Identity Manager and vRealize Automation contain two privilege escalation vulnerabilities. A malicious actor with local access can escalate privileges to 'root'.

vmware access_connector · vmware identity_manager · vmware identity_manager_connector · vmware one_access
0.00EPSS
CVE-2017-4896
Low 3.8

Airwatch Inbox for Android contains a vulnerability that may allow a rooted device to decrypt the local data used by the application. Successful exploitation of this issue may result in an unauthorized disclosure of confidential data.

vmware airwatch_agent · vmware airwatch_inbox
0.00EPSS
CVE-2009-0518
Low 2.1

VI Client in VMware VirtualCenter before 2.5 Update 4, VMware ESXi 3.5 before Update 4, and VMware ESX 3.5 before Update 4 retains the VirtualCenter Server password in process memory, which might allow local users to obtain this password.

vmware vmware_esx · vmware vmware_esxi · vmware vmware_virtualcenter
0.00EPSS
CVE-2008-4916
Medium 4.6

Unspecified vulnerability in a guest virtual device driver in VMware Workstation before 5.5.9 build 126128, and 6.5.1 and earlier 6.x versions; VMware Player before 1.0.9 build 126128, and 2.5.1 and earlier 2.x versions; VMware ACE before 1.0.8 build 125922, a…

emc vmware_player · vmware vmware_ace · vmware vmware_esx · vmware vmware_esxi · and 3 more
0.00EPSS
CVE-2020-3971
Medium 5.5

VMware ESXi (6.7 before ESXi670-201904101-SG and 6.5 before ESXi650-201907101-SG), Workstation (15.x before 15.0.2), and Fusion (11.x before 11.0.2) contain a heap overflow vulnerability in the vmxnet3 virtual network adapter. A malicious actor with local acce…

vmware cloud_foundation · vmware esxi · vmware fusion · vmware workstation
0.00EPSS
CVE-2010-1139
High 7.2

Format string vulnerability in vmrun in VMware VIX API 1.6.x, VMware Workstation 6.5.x before 6.5.4 build 246459, VMware Player 2.5.x before 2.5.4 build 246459, and VMware Server 2.x on Linux, and VMware Fusion 2.x before 2.0.7 build 246742, allows local users…

vmware fusion · vmware player · vmware server · vmware vix_api · and 1 more
0.00EPSS
CVE-2026-40988
High 7.5

An application using spring-security-saml2-service-provider and the REDIRECT binding for SAML 2.0 Login or Logout may be vulnerable to a denial of service by way of an unbounded writer that inflates the compressed SAML payload into memory. Affected versions: …

vmware spring_security
0.00EPSS
CVE-2018-6978
Medium 6.7

vRealize Operations (7.x before 7.0.0.11287810, 6.7.x before 6.7.0.11286837 and 6.6.x before 6.6.1.11286876) contains a local privilege escalation vulnerability due to improper permissions of support scripts. Admin user of the vROps application with shell acce…

vmware vrealize_operations
0.00EPSS
CVE-2015-5191
Medium 6.7

VMware Tools prior to 10.0.9 contains multiple file system races in libDeployPkg, related to the use of hard-coded paths under /tmp. Successful exploitation of this issue may result in a local privilege escalation. CVSS:3.0/AV:L/AC:H/PR:L/UI:R/S:U/C:H/I:H/A:H

vmware tools
0.00EPSS
CVE-2009-1805
Medium 4.0

Unspecified vulnerability in the VMware Descheduled Time Accounting driver in VMware Workstation 6.5.1 and earlier, VMware Player 2.5.1 and earlier, VMware ACE 2.5.1 and earlier, VMware Server 1.x before 1.0.9 build 156507 and 2.x before 2.0.1 build 156745, VM…

vmware ace · vmware esx · vmware esxi · vmware fusion · and 3 more
0.00EPSS
CVE-2026-41717
High 8.1

Spring Data MongoDB contains a SpEL (Spring Expression Language) expression injection vulnerability. The issue occurs during parameter binding when a user-defined repository query method is annotated with @Query and utilizes a capture-all placeholder. Affecte…

vmware spring_data_mongodb
0.00EPSS
CVE-2025-22249
High 8.2

VMware Aria automation contains a DOM based Cross-Site Scripting (XSS) vulnerability. A malicious actor may exploit this issue to steal the access token of a logged in user of VMware Aria automation appliance by tricking the user into clicking a malicious craf…

vmware aria_automation · vmware cloud_foundation · vmware telco_cloud_platform
0.00EPSS
CVE-2022-31664
High 7.8

VMware Workspace ONE Access, Identity Manager and vRealize Automation contain a privilege escalation vulnerability. A malicious actor with local access can escalate privileges to 'root'.

vmware access_connector · vmware identity_manager · vmware identity_manager_connector · vmware one_access
0.00EPSS
CVE-2016-5329
Medium 5.5

VMware Fusion 8.x before 8.5 on OS X, when System Integrity Protection (SIP) is enabled, allows local users to determine kernel memory addresses and bypass the kASLR protection mechanism via unspecified vectors.

vmware fusion
0.00EPSS
CVE-2024-22277
Medium 6.4

VMware Cloud Director Availability contains an HTML injection vulnerability. A malicious actor with network access to VMware Cloud Director Availability can craft malicious HTML tags to execute within replication tasks.

vmware cloud_director
0.00EPSS
CVE-2025-22243
High 7.5

VMware NSX Manager UI is vulnerable to a stored Cross-Site Scripting (XSS) attack due to improper input validation.

broadcom vmware_nsx · vmware cloud_foundation · vmware telco_cloud_infrastructure · vmware telco_cloud_platform
0.00EPSS
CVE-2020-3990
Medium 6.5

VMware Workstation (15.x) and Horizon Client for Windows (5.x before 5.4.4) contain an information disclosure vulnerability due to an integer overflow issue in Cortado ThinPrint component. A malicious actor with normal access to a virtual machine may be able t…

vmware horizon_client · vmware workstation_player · vmware workstation_pro
0.00EPSS
CVE-2008-4914
Medium 4.7

Unspecified vulnerability in VMware ESXi 3.5 before ESXe350-200901401-I-SG and ESX 3.5 before ESX350-200901401-SG allows local administrators to cause a denial of service (host crash) via a snapshot with a malformed VMDK delta disk.

vmware esx · vmware esxi
0.00EPSS
CVE-2025-22220
Medium 4.3

VMware Aria Operations for Logs contains a privilege escalation vulnerability. A malicious actor with non-administrative privileges and network access to Aria Operations for Logs API may be able to perform certain operations in the context of an admin user.

vmware aria_operations_for_logs · vmware cloud_foundation
0.00EPSS
CVE-2007-5023
Medium 6.9

Unquoted Windows search path vulnerability in EMC VMware Workstation before 5.5.5 Build 56455 and 6.x before 6.0.1 Build 55017, Player before 1.0.5 Build 56455 and Player 2 before 2.0.1 Build 55017, ACE before 1.0.3 Build 54075, and Server before 1.0.4 Build 5…

canonical ubuntu_linux · vmware ace · vmware player · vmware server · and 1 more
0.00EPSS
CVE-2024-38834
Medium 6.5

VMware Aria Operations contains a stored cross-site scripting vulnerability. A malicious actor with editing access to cloud provider might be able to inject malicious script leading to stored cross-site scripting in the product VMware Aria Operations.

vmware aria_operations · vmware cloud_foundation
0.00EPSS
CVE-2011-2146
Low 2.1

mount.vmhgfs in the VMware Host Guest File System (HGFS) in VMware Workstation 7.1.x before 7.1.4, VMware Player 3.1.x before 3.1.4, VMware Fusion 3.1.x before 3.1.3, VMware ESXi 3.5 through 4.1, and VMware ESX 3.0.3 through 4.1 allows guest OS users to determ…

vmware esx · vmware esxi · vmware fusion · vmware player · and 1 more
0.00EPSS
CVE-2010-2427
Medium 4.4

VMware Studio 2.0 does not properly write to temporary files, which allows local users to gain privileges via unspecified vectors.

vmware studio
0.00EPSS
CVE-2003-0480
Low 3.7

VMware Workstation 4.0 for Linux allows local users to overwrite arbitrary files and gain privileges via "symlink manipulation."

vmware workstation
0.00EPSS