7.2
CVSSv2

CVE-2018-6973

Published: 15/08/2018 Updated: 15/10/2018
CVSS v2 Base Score: 7.2 | Impact Score: 10 | Exploitability Score: 3.9
CVSS v3 Base Score: 8.8 | Impact Score: 6 | Exploitability Score: 2
VMScore: 641
Vector: AV:L/AC:L/Au:N/C:C/I:C/A:C

Vulnerability Summary

VMware Workstation (14.x prior to 14.1.3) and Fusion (10.x prior to 10.1.3) contain an out-of-bounds write vulnerability in the e1000 device. This issue may allow a guest to execute code on the host.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

vmware workstation

vmware fusion

Github Repositories

VMware Exploitation A collection of links related to VMware escape exploits Pull requests are welcome Follow @andreyknvl on Twitter to be notified of updates Research 2020 "Detailing Two VMware Workstation TOCTOU Vulnerabilities" by Reno Robert [article] "SpeedPwning VMware Workstation: Failing at Pwn2Own, but doing it fast" by Corentin Bayet and Bruno P