cbcvebase.
CVE-2020-3991
published 2020-10-16

CVE-2020-3991: VMware Horizon Client for Windows (5.x before 5.5.0) contains a denial-of-service vulnerability due to a file system access control issue during install time…

high7.1CVSS 3.1
AVLACLPRLUINSUCNIHAH
VMware Horizon Client for Windows (5.x before 5.5.0) contains a denial-of-service vulnerability due to a file system access control issue during install time. Successful exploitation of this issue may allow an attacker to overwrite certain admin privileged files through a symbolic link attack at install time. This will result into a denial-of-service condition on the machine where Horizon Client for Windows is installed.

Affected

2 ranges
VendorProductVersion rangeFixed in
apachenifi
vmwarehorizon_client>= 5.0.0 < 5.5.05.5.0