CVE-2022-22983
published 2022-08-10CVE-2022-22983: VMware Workstation (16.x prior to 16.2.4) contains an unprotected storage of credentials vulnerability. A malicious actor with local user privileges to the…
PriorityP425medium5.9CVSS 3.1
AVLACLPRLUIRSCCHINAN
EPSS
0.29%
20.4th percentile
VMware Workstation (16.x prior to 16.2.4) contains an unprotected storage of credentials vulnerability. A malicious actor with local user privileges to the victim machine may exploit this vulnerability leading to the disclosure of user passwords of the remote server connected through VMware Workstation.
Affected
1 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| vmware | workstation | >= 16.0.0 < 16.2.4 | 16.2.4 |
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
GHSA
GHSA-32pr-8mxp-r53q: VMware Workstation (16
ghsa_unreviewed·2022-08-11
CVE-2022-22983 [MEDIUM] CWE-522 GHSA-32pr-8mxp-r53q: VMware Workstation (16
VMware Workstation (16.x prior to 16.2.4) contains an unprotected storage of credentials vulnerability. A malicious actor with local user privileges to the victim machine may exploit this vulnerability leading to the disclosure of user passwords of the remote server connected through VMware Workstation.
VMware
VMware Workstation update addresses an unprotected storage of credentials vulnerability (CVE-2022-22983)
vendor_vmware·2022-08-09·CVSS 5.9
CVE-2022-22983 [MEDIUM] VMware Workstation update addresses an unprotected storage of credentials vulnerability (CVE-2022-22983)
VMSA-2022-0023: VMware Workstation update addresses an unprotected storage of credentials vulnerability (CVE-2022-22983)
VMware Workstation contains an unprotected storage of credentials vulnerability. VMware has evaluated the severity of this issue to be in the Moderate severity range with a maximum CVSSv3 base score of 5.7.
CVEs: CVE-2022-22983
Affected products: VMware Workstation
No detection rules found.
No public exploits indexed.
No writeups or analysis indexed.
2022-08-10
Published