imPC@ndo EN

Vulnerabilità VMware

956 CVE

CVE-2011-2145
Media 6.3

mount.vmhgfs in the VMware Host Guest File System (HGFS) in VMware Workstation 7.1.x before 7.1.4, VMware Player 3.1.x before 3.1.4, VMware Fusion 3.1.x before 3.1.3, VMware ESXi 3.5 through 4.1, and VMware ESX 3.0.3 through 4.1, when a Solaris or FreeBSD gues…

vmware esx · vmware esxi · vmware fusion · vmware player · e altri 1
0.00EPSS
CVE-2010-1140
Media 6.9

The USB service in VMware Workstation 7.0 before 7.0.1 build 227600 and VMware Player 3.0 before 3.0.1 build 227600 on Windows might allow host OS users to gain privileges by placing a Trojan horse program at an unspecified location on the host OS disk.

vmware player · vmware workstation
0.00EPSS
CVE-2026-41848
Bassa 3.7

Applications may be vulnerable to a Regular Expression Denial of Service (ReDoS) attack if an attacker is able to provide a pattern which is then directly or indirectly supplied to one of the following methods in AntPathMatcher: match(String pattern, String pa…

vmware spring_framework
0.00EPSS
CVE-2021-21991
Alta 7.8

The vCenter Server contains a local privilege escalation vulnerability due to the way it handles session tokens. A malicious actor with non-administrative user access on vCenter Server host may exploit this issue to escalate privileges to Administrator on the …

vmware cloud_foundation · vmware vcenter_server
0.00EPSS
CVE-2026-41841
Media 5.9

Spring MVC and WebFlux applications are vulnerable to Information Disclosure attacks when resolving static resources. Affected versions: Spring Framework 7.0.0 through 7.0.7; 6.2.0 through 6.2.18; 6.1.0 through 6.1.27; 5.3.0 through 5.3.48.

vmware spring_framework
0.00EPSS
CVE-2026-41724
Alta 8.0

VMware Cloud Foundation Operations contains multiple stored cross-site scripting vulnerabilities.A malicious actor with privileges to create policies, views or text-widgets may be able to inject scripts to perform administrative actions in VMware Cloud Foundat…

vmware aria_operations · vmware cloud_foundation · vmware telco_cloud_platform
0.00EPSS
CVE-2026-40975
Media 4.8

Values produced by ${random.value} are not suitable for use as secrets. ${random.uuid} is not affected. ${random.int} and ${random.long} should never be used for secrets as they are numeric values with a predictable range. Affected: Spring Boot 4.0.0–4.0.5 (f…

vmware spring_boot
0.00EPSS
CVE-2026-41728
Alta 7.5

Spring Data REST's JSON Patch (application/json-patch+json) implementation does not apply the write-access filter to intermediate path segments when resolving a multi-segment JSON Pointer. Affected versions: Spring Data REST 3.7.0 through 3.7.19; 4.3.0 throug…

vmware spring_data_rest
0.00EPSS
CVE-2026-47835
Alta 8.6

In Spring AI Vector Stores, special characters could be used to force the execution of arbitrary queries in Elasticsearch, OpenSearch, and GemFire VectorDB. Affected components: spring-ai-elasticsearch-store, spring-ai-opensearch-store, spring-ai-gemfire-store…

vmware spring_ai
0.00EPSS
CVE-2007-1056
Alta 7.2

VMware Workstation 5.5.3 build 34685 does not provide per-user restrictions on certain privileged actions, which allows local users to perform restricted operations such as changing system time, accessing hardware components, and stopping the "VMware tools ser…

vmware workstation
0.00EPSS
CVE-2019-5527
Alta 8.8

ESXi, Workstation, Fusion, VMRC and Horizon Client contain a use-after-free vulnerability in the virtual sound device. VMware has evaluated the severity of this issue to be in the Important severity range with a maximum CVSSv3 base score of 8.5.

vmware esxi · vmware fusion · vmware horizon · vmware remote_console · e altri 1
0.00EPSS
CVE-2026-41722
Alta 8.0

VMware Cloud Foundation Operations contains multiple stored cross-site scripting vulnerabilities.A malicious actor with privileges to create policies, views or text-widgets may be able to inject scripts to perform administrative actions in VMware Cloud Foundat…

vmware aria_operations · vmware cloud_foundation · vmware telco_cloud_platform · vmware vsphere
0.00EPSS
CVE-2010-3277
Bassa 2.1

The installer in VMware Workstation 7.x before 7.1.2 build 301548 and VMware Player 3.x before 3.1.2 build 301548 renders an index.htm file if present in the installation directory, which might allow local users to trigger unintended interpretation of web scri…

vmware player · vmware workstation
0.00EPSS
CVE-2020-3988
Media 6.1

VMware Workstation (15.x) and Horizon Client for Windows (5.x before 5.4.4) contain an out-of-bounds read vulnerability in Cortado ThinPrint component (JPEG2000 parser). A malicious actor with normal access to a virtual machine may be able to exploit these iss…

vmware horizon_client · vmware workstation_player · vmware workstation_pro
0.00EPSS
CVE-2020-3987
Media 6.1

VMware Workstation (15.x) and Horizon Client for Windows (5.x before 5.4.4) contain an out-of-bounds read vulnerability in Cortado ThinPrint component (EMR STRETCHDIBITS parser). A malicious actor with normal access to a virtual machine may be able to exploit …

vmware horizon_client · vmware workstation_player · vmware workstation_pro
0.00EPSS
CVE-2020-3986
Media 6.1

VMware Workstation (15.x) and Horizon Client for Windows (5.x before 5.4.4) contain an out-of-bounds read vulnerability in Cortado ThinPrint component (EMF Parser). A malicious actor with normal access to a virtual machine may be able to exploit these issues t…

vmware horizon_client · vmware workstation_player · vmware workstation_pro
0.00EPSS
CVE-2007-2491
Alta 7.2

The PIIX4 power management subsystem in EMC VMware Workstation 5.5.3.34685 and VMware Server 1.0.1.29996 allows local users to write to arbitrary memory locations via a crafted poke to I/O port 0x1004, triggering a denial of service (virtual machine crash) or …

vmware server · vmware workstation
0.00EPSS
CVE-2026-41007
Alta 7.5

Spring HATEOAS maintains an unbounded static cache of StringLinkRelation instances keyed on attacker-supplied strings. Affected versions: Spring HATEOAS 1.5.0 through 1.5.6; 2.3.0 through 2.3.4; 2.4.0 through 2.4.1; 2.5.0 through 2.5.2; 3.0.0 through 3.0.3.

vmware spring_hateoas
0.00EPSS
CVE-2022-22983
Media 5.9

VMware Workstation (16.x prior to 16.2.4) contains an unprotected storage of credentials vulnerability. A malicious actor with local user privileges to the victim machine may exploit this vulnerability leading to the disclosure of user passwords of the remote …

vmware workstation
0.00EPSS
CVE-2026-41726
Media 6.5

When an application opts into DelegatingDeserializer, a producer can grow the consumer's heap without bound by sending records with unique random spring.kafka.serialization.selector header values, eventually causing GC thrash and OutOfMemoryError. Affected ve…

vmware spring_for_apache_kafka
0.00EPSS
CVE-2026-22747
Media 6.8

Vulnerability in Spring Spring Security. SubjectX500PrincipalExtractor does not correctly handle certain malformed X.509 certificate CN values, which can lead to reading the wrong value for the username. In a carefully crafted certificate, this can lead to an …

vmware spring_security
0.00EPSS
CVE-2021-22042
Alta 7.8

VMware ESXi contains an unauthorized access vulnerability due to VMX having access to settingsd authorization tickets. A malicious actor with privileges within the VMX process only, may be able to access settingsd service running as a high privileged user.

vmware cloud_foundation · vmware esxi
0.00EPSS
CVE-2020-3941
Alta 7.0

The repair operation of VMware Tools for Windows 10.x.y has a race condition which may allow for privilege escalation in the Virtual Machine where Tools is installed. This vulnerability is not present in VMware Tools 11.x.y since the affected functionality is …

vmware tools
0.00EPSS
CVE-2022-22962
Alta 7.8

VMware Horizon Agent for Linux (prior to 22.x) contains a local privilege escalation as a user is able to change the default shared folder location due to a vulnerable symbolic link. Successful exploitation can result in linking to a root owned file.

vmware horizon
0.00EPSS
CVE-2023-20854
Alta 8.4

VMware Workstation contains an arbitrary file deletion vulnerability. A malicious actor with local user privileges on the victim's machine may exploit this vulnerability to delete arbitrary files from the file system of the machine on which Workstation is inst…

vmware workstation
0.00EPSS