Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
vmware tools vulnerabilities and exploits
(subscribe to this query)
NA
CVE-2023-20867
A fully compromised ESXi host can force VMware Tools to fail to authenticate host-to-guest operations, impacting the confidentiality and integrity of the guest virtual machine.
Vmware Tools
3 Articles
320
VMScore
CVE-2019-5522
VMware Tools for Windows update addresses an out of bounds read vulnerability in vm3dmp driver which is installed with vmtools in Windows guest machines. This issue is present in versions 10.2.x and 10.3.x before 10.3.10. A local attacker with non-administrative access to a Windo...
Vmware Tools
392
VMScore
CVE-2018-6969
VMware Tools (10.x and prior prior to 10.3.0) contains an out-of-bounds read vulnerability in HGFS. Successful exploitation of this issue may lead to information disclosure or may allow malicious users to escalate their privileges on the guest VMs. In order to be able to exploit ...
Vmware Tools
NA
CVE-2021-31693
The 10Web Photo Gallery plugin up to and including 1.5.68 for WordPress allows XSS via album_gallery_id_0, bwg_album_search_0, and type_0 for bwg_frontend_data. NOTE: other parameters are covered by CVE-2021-24291, CVE-2021-25041, and CVE-2021-46889. NOTE: VMware information, pre...
Vmware Tools
NA
CVE-2023-34057
VMware Tools contains a local privilege escalation vulnerability. A malicious actor with local user access to a guest virtual machine may elevate privileges within the virtual machine.
Vmware Tools
NA
CVE-2022-31693
VMware Tools for Windows (12.x.y before 12.1.5, 11.x.y and 10.x.y) contains a denial-of-service vulnerability in the VM3DMP driver. A malicious actor with local user privileges in the Windows guest OS, where VMware Tools is installed, can trigger a PANIC in the VM3DMP driver lead...
Vmware Tools
436
VMScore
CVE-2021-21997
VMware Tools for Windows (11.x.y before 11.3.0) contains a denial-of-service vulnerability in the VM3DMP driver. A malicious actor with local user privileges in the Windows guest operating system, where VMware Tools is installed, can trigger a PANIC in the VM3DMP driver leading t...
Vmware Tools
445
VMScore
CVE-2016-5330
Untrusted search path vulnerability in the HGFS (aka Shared Folders) feature in VMware Tools 10.0.5 in VMware ESXi 5.0 up to and including 6.0, VMware Workstation Pro 12.1.x prior to 12.1.1, VMware Workstation Player 12.1.x prior to 12.1.1, and VMware Fusion 8.1.x prior to 8.1.1 ...
Vmware Workstation Player
Vmware Workstation Pro
Vmware Esxi
Vmware Fusion
Vmware Tools
1 EDB exploit
561
VMScore
CVE-2014-4199
vm-support 0.88 in VMware Tools, as distributed with VMware Workstation up to and including 10.0.3 and other products, allows local users to write to arbitrary files via a symlink attack on a file in /tmp.
Vmware Workstation 10.0.1
Vmware Workstation 10.0.2
Vmware Workstation
Vmware Tools
Vmware Workstation 10.0
Vmware Vm-support 0.88
418
VMScore
CVE-2014-4200
vm-support 0.88 in VMware Tools, as distributed with VMware Workstation up to and including 10.0.3 and other products, uses 0644 permissions for the vm-support archive, which allows local users to obtain sensitive information by extracting files from this archive.
Vmware Workstation 10.0.2
Vmware Workstation
Vmware Workstation 10.0
Vmware Workstation 10.0.1
Vmware Vm-support 0.88
Vmware Tools
VMScore
CVSSv2
CVSSv3
VMScore
Recommendations:
CVE-2023-7073
CVE-2024-5496
CVE-2024-5495
XPath injection
bypass
CVE-2024-30043
CVE-2024-24919
denial of service
CVE-2024-35468
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
« PREV
1
2
3
4
5
NEXT »