imPC@ndo EN

Vulnerabilità VMware

956 CVE

CVE-2021-22055
Media 5.3

The SchedulerServer in Vmware photon allows remote attackers to inject logs through \r in the package parameter. Attackers can also insert malicious data and fake entries.

vmware photon_os
0.01EPSS
CVE-2019-5531
Media 5.4

VMware vSphere ESXi (6.7 prior to ESXi670-201810101-SG, 6.5 prior to ESXi650-201811102-SG, and 6.0 prior to ESXi600-201807103-SG) and VMware vCenter Server (6.7 prior to 6.7 U1b, 6.5 prior to 6.5 U2b, and 6.0 prior to 6.0 U3j) contain an information disclosure…

vmware esxi · vmware vcenter_server · vmware vsphere_esxi
0.01EPSS
CVE-2022-31707
Alta 7.2

vRealize Operations (vROps) contains a privilege escalation vulnerability. VMware has evaluated the severity of this issue to be in the Important severity range with a maximum CVSSv3 base score of 7.2.

vmware vrealize_operations
0.01EPSS
CVE-2021-22038
Alta 8.8

On Windows, the uninstaller binary copies itself to a fixed temporary location, which is then executed (the originally called uninstaller exits, so it does not block the installation directory). This temporary location is not randomized and does not restrict a…

vmware installbuilder
0.01EPSS
CVE-2021-22029
Alta 7.5

VMware Workspace ONE UEM REST API contains a denial of service vulnerability. A malicious actor with access to /API/system/admins/session could cause an API denial of service due to improper rate limiting.

vmware workspace_one_uem_console
0.01EPSS
CVE-2021-21995
Alta 7.5

OpenSLP as used in ESXi has a denial-of-service vulnerability due a heap out-of-bounds read issue. A malicious actor with network access to port 427 on ESXi may be able to trigger a heap out-of-bounds read in OpenSLP service resulting in a denial-of-service co…

vmware cloud_foundation · vmware esxi
0.01EPSS
CVE-2020-3977
Media 6.5

VMware Horizon DaaS (7.x and 8.x before 8.0.1 Update 1) contains a broken authentication vulnerability due to a flaw in the way it handled the first factor authentication. Successful exploitation of this issue may allow an attacker to bypass two-factor authent…

vmware horizon_daas
0.01EPSS
CVE-2022-31685
Critica 9.8

VMware Workspace ONE Assist prior to 22.10 contains an Authentication Bypass vulnerability. A malicious actor with network access to Workspace ONE Assist may be able to obtain administrative access without the need to authenticate to the application.

vmware workspace_one_assist
0.01EPSS
CVE-2022-22975
Media 6.6

An issue was discovered in the Pinniped Supervisor with either LADPIdentityProvider or ActiveDirectoryIdentityProvider resources. An attack would involve the malicious user changing the common name (CN) of their user entry on the LDAP or AD server to include s…

vmware pinniped
0.01EPSS
CVE-2023-34063
Critica 9.9

Aria Automation contains a Missing Access Control vulnerability. An authenticated malicious actor may exploit this vulnerability leading to unauthorized access to remote organizations and workflows.

vmware aria_automation · vmware cloud_foundation
0.01EPSS
CVE-2012-6325
Media 4.0

VMware vCenter Server Appliance (vCSA) 5.0 before Update 2 does not properly parse XML documents, which allows remote authenticated users to read arbitrary files via unspecified vectors.

vmware vcenter_server_appliance
0.01EPSS
CVE-2022-22982
Alta 7.5

The vCenter Server contains a server-side request forgery (SSRF) vulnerability. A malicious actor with network access to 443 on the vCenter Server may exploit this issue by accessing a URL request outside of vCenter Server or accessing an internal service.

vmware cloud_foundation · vmware vcenter_server
0.01EPSS
CVE-2021-21993
Media 6.5

The vCenter Server contains an SSRF (Server Side Request Forgery) vulnerability due to improper validation of URLs in vCenter Server Content Library. An authorised user with access to content library may exploit this issue by sending a POST request to vCenter …

vmware cloud_foundation · vmware vcenter_server
0.01EPSS
CVE-2014-8372
Media 4.0

AirWatch by VMware On-Premise 7.3.x before 7.3.3.0 (FP3) allows remote authenticated users to obtain the organizational information and statistics from arbitrary tenants via vectors involving a direct object reference.

vmware airwatch
0.01EPSS
CVE-2020-3993
Media 5.9

VMware NSX-T (3.x before 3.0.2, 2.5.x before 2.5.2.2.0) contains a security vulnerability that exists in the way it allows a KVM host to download and install packages from NSX manager. A malicious actor with MITM positioning may be able to exploit this issue t…

broadcom vmware_nsx-t_data_center · vmware cloud_foundation
0.01EPSS
CVE-2009-3281
Alta 7.2

The vmx86 kernel extension in VMware Fusion before 2.0.6 build 196839 does not use correct file permissions, which allows host OS users to gain privileges on the host OS via unspecified vectors.

vmware fusion
0.01EPSS
CVE-2022-31686
Critica 9.8

VMware Workspace ONE Assist prior to 22.10 contains a Broken Authentication Method vulnerability. A malicious actor with network access to Workspace ONE Assist may be able to obtain administrative access without the need to authenticate to the application.

vmware workspace_one_assist
0.01EPSS
CVE-2021-22036
Media 6.5

VMware vRealize Orchestrator ((8.x prior to 8.6) contains an open redirect vulnerability due to improper path handling. A malicious actor may be able to redirect victim to an attacker controlled domain due to improper path handling in vRealize Orchestrator lea…

vmware vrealize_automation · vmware vrealize_orchestrator
0.01EPSS
CVE-2023-20857
Media 6.8

VMware Workspace ONE Content contains a passcode bypass vulnerability. A malicious actor, with access to a users rooted device, may be able to bypass the VMware Workspace ONE Content passcode.

vmware workspace_one_content
0.01EPSS
CVE-2017-4940
Media 6.1

The ESXi Host Client in VMware ESXi (6.5 before ESXi650-201712103-SG, 5.5 before ESXi600-201711103-SG and 5.5 before ESXi550-201709102-SG) contains a vulnerability that may allow for stored cross-site scripting (XSS). An attacker can exploit this vulnerability…

vmware esxi
0.01EPSS
CVE-2023-20896
Media 5.9

The VMware vCenter Server contains an out-of-bounds read vulnerability in the implementation of the DCERPC protocol. A malicious actor with network access to vCenter Server may trigger an out-of-bounds read by sending a specially crafted packet leading to deni…

vmware vcenter_server
0.01EPSS
CVE-2023-20883
Alta 7.5

In Spring Boot versions 3.0.0 - 3.0.6, 2.7.0 - 2.7.11, 2.6.0 - 2.6.14, 2.5.0 - 2.5.14 and older unsupported versions, there is potential for a denial-of-service (DoS) attack if Spring MVC is used together with a reverse proxy cache.

vmware spring_boot
0.01EPSS
CVE-2017-4930
Media 5.4

VMware AirWatch Console 9.x prior to 9.2.0 contains a vulnerability that could allow an authenticated AWC user to add a malicious URL to an enrolled device's 'Links' page. Successful exploitation of this issue could result in an unsuspecting AWC user being red…

vmware airwatch
0.01EPSS
CVE-2021-22016
Media 6.1

The vCenter Server contains a reflected cross-site scripting vulnerability due to a lack of input sanitization. An attacker may exploit this issue to execute malicious scripts by tricking a victim into clicking a malicious link.

vmware cloud_foundation · vmware vcenter_server
0.01EPSS
CVE-2019-5542
Alta 7.7

VMware Workstation (15.x before 15.5.1) and Fusion (11.x before 11.5.1) contain a denial-of-service vulnerability in the RPC handler. Successful exploitation of this issue may allow attackers with normal user privileges to create a denial-of-service condition …

vmware fusion · vmware workstation
0.01EPSS