10
CVSSv2

CVE-2017-4918

Published: 08/06/2017 Updated: 08/07/2017
CVSS v2 Base Score: 10 | Impact Score: 10 | Exploitability Score: 10
CVSS v3 Base Score: 9.8 | Impact Score: 5.9 | Exploitability Score: 3.9
VMScore: 891
Vector: AV:N/AC:L/Au:N/C:C/I:C/A:C

Vulnerability Summary

VMware Horizon View Client (2.x, 3.x and 4.x before 4.5.0) contains a command injection vulnerability in the service startup script. Successful exploitation of this issue may allow unprivileged users to escalate their privileges to root on the Mac OSX system where the client is installed.

Vulnerable Product Search on Vulmon Subscribe to Product

vmware horizon view 3.0

vmware horizon view 2.3

vmware horizon view 4.2.0

vmware horizon view 4.0.1

vmware horizon view 2.2

vmware horizon view 2.1

vmware horizon view 2.0

vmware horizon view 3.2

vmware horizon view 3.1

vmware horizon view 4.4.0

vmware horizon view 4.3.0

vmware horizon view 3.3

vmware horizon view 4.0.0

vmware horizon view 4.1.0