cbcvebase.

Vmware Cloud Foundation vulnerabilities

140 known vulnerabilities affecting vmware/cloud_foundation.

Total CVEs
140
CISA KEV
16
actively exploited
Public exploits
20
Exploited in wild
25
Severity breakdown
CRITICAL20HIGH66MEDIUM51LOW3

Vulnerabilities

Page 5 of 7
CVE-2020-3968P3HIGHCVSS 8.2≥ 3.0, < 3.10≥ 4.0.0, < 4.0.12020-06-25
CVE-2020-3968 [HIGH] CWE-787 CVE-2020-3968: VMware ESXi (7.0 before ESXi_7.0.0-1.20.16321839, 6.7 before ESXi670-202004101-SG and 6.5 before ESX VMware ESXi (7.0 before ESXi_7.0.0-1.20.16321839, 6.7 before ESXi670-202004101-SG and 6.5 before ESXi650-202005401-SG), Workstation (15.x before 15.5.5), and Fusion (11.x before 11.5.5) contain an out-of-bounds write vulnerability in the USB 3.0 controller (xHCI). A malicious actor with local administrative privileges on a virtual machine may be able to
nvd
CVE-2021-22050P3HIGHCVSS 7.5≥ 3.0, < 3.11≥ 4.0, < 4.42022-02-16
CVE-2021-22050 [HIGH] CWE-770 CVE-2021-22050: ESXi contains a slow HTTP POST denial-of-service vulnerability in rhttpproxy. A malicious actor with ESXi contains a slow HTTP POST denial-of-service vulnerability in rhttpproxy. A malicious actor with network access to ESXi may exploit this issue to create a denial-of-service condition by overwhelming rhttpproxy service with multiple requests.
nvd
CVE-2020-4004P3HIGHCVSS 8.2≥ 3.0, < 3.10.1.2≥ 4.0, < 4.1.0.12020-11-20
CVE-2020-4004 [HIGH] CWE-416 CVE-2020-4004: VMware ESXi (7.0 before ESXi70U1b-17168206, 6.7 before ESXi670-202011101-SG, 6.5 before ESXi650-2020 VMware ESXi (7.0 before ESXi70U1b-17168206, 6.7 before ESXi670-202011101-SG, 6.5 before ESXi650-202011301-SG), Workstation (15.x before 15.5.7), Fusion (11.x before 11.5.7) contain a use-after-free vulnerability in the XHCI USB controller. A malicious actor with local administrative privileges on a virtual machine may exploit this issue to execute code
nvd
CVE-2021-22010P3HIGHCVSS 7.5≥ 3.0, < 5.02021-09-23
CVE-2021-22010 [HIGH] CWE-400 CVE-2021-22010: The vCenter Server contains a denial-of-service vulnerability in VPXD service. A malicious actor wit The vCenter Server contains a denial-of-service vulnerability in VPXD service. A malicious actor with network access to port 443 on vCenter Server may exploit this issue to create a denial of service condition due to excessive memory consumption by VPXD service.
nvd
CVE-2021-22018P3MEDIUMCVSS 6.5≥ 4.0, < 4.3.12021-09-23
CVE-2021-22018 [MEDIUM] CVE-2021-22018: The vCenter Server contains an arbitrary file deletion vulnerability in a VMware vSphere Life-cycle The vCenter Server contains an arbitrary file deletion vulnerability in a VMware vSphere Life-cycle Manager plug-in. A malicious actor with network access to port 9087 on vCenter Server may exploit this issue to delete non critical files.
nvd
CVE-2025-22249P3HIGHCVSS 8.2≥ 4.0, ≤ 5.2.12025-05-13
CVE-2025-22249 [HIGH] CWE-79 CVE-2025-22249: VMware Aria automation contains a DOM based Cross-Site Scripting (XSS) vulnerability. A malicious ac VMware Aria automation contains a DOM based Cross-Site Scripting (XSS) vulnerability. A malicious actor may exploit this issue to steal the access token of a logged in user of VMware Aria automation appliance by tricking the user into clicking a malicious crafted payload URL.
nvd
CVE-2021-22009P3HIGHCVSS 7.5≥ 3.0, < 5.02021-09-23
CVE-2021-22009 [HIGH] CWE-668 CVE-2021-22009: The vCenter Server contains multiple denial-of-service vulnerabilities in VAPI (vCenter API) service The vCenter Server contains multiple denial-of-service vulnerabilities in VAPI (vCenter API) service. A malicious actor with network access to port 443 on vCenter Server may exploit these issues to create a denial of service condition due to excessive memory consumption by VAPI service.
nvd
CVE-2025-41231P3HIGHCVSS 7.3≥ 4.5, < 4.5.2≥ 5.0, < 5.2.1.22025-05-20
CVE-2025-41231 [HIGH] CWE-862 CVE-2025-41231: VMware Cloud Foundation contains a missing authorisation vulnerability. A malicious actor with acces VMware Cloud Foundation contains a missing authorisation vulnerability. A malicious actor with access to VMware Cloud Foundation appliance may be able to perform certain unauthorised actions and access limited sensitive information.
nvd
CVE-2020-3967P3HIGHCVSS 7.5≥ 3.0, < 3.10≥ 4.0.0, < 4.0.12020-06-25
CVE-2020-3967 [HIGH] CWE-787 CVE-2020-3967: VMware ESXi (7.0 before ESXi_7.0.0-1.20.16321839, 6.7 before ESXi670-202004101-SG and 6.5 before ESX VMware ESXi (7.0 before ESXi_7.0.0-1.20.16321839, 6.7 before ESXi670-202004101-SG and 6.5 before ESXi650-202005401-SG), Workstation (15.x before 15.5.5), and Fusion (11.x before 11.5.5) contain a heap-overflow vulnerability in the USB 2.0 controller (EHCI). A malicious actor with local access to a virtual machine may be able to exploit this vulnerabilit
nvd
CVE-2020-3966P3HIGHCVSS 7.5≥ 3.0, < 3.10≥ 4.0.0, < 4.0.12020-06-25
CVE-2020-3966 [HIGH] CWE-362 CVE-2020-3966: VMware ESXi (7.0 before ESXi_7.0.0-1.20.16321839, 6.7 before ESXi670-202004101-SG and 6.5 before ESX VMware ESXi (7.0 before ESXi_7.0.0-1.20.16321839, 6.7 before ESXi670-202004101-SG and 6.5 before ESXi650-202005401-SG), Workstation (15.x before 15.5.2), and Fusion (11.x before 11.5.2) contain a heap-overflow due to a race condition issue in the USB 2.0 controller (EHCI). A malicious actor with local access to a virtual machine may be able to exploit t
nvd
CVE-2021-21993P3MEDIUMCVSS 6.5≥ 3.0, < 5.02021-09-23
CVE-2021-21993 [MEDIUM] CWE-918 CVE-2021-21993: The vCenter Server contains an SSRF (Server Side Request Forgery) vulnerability due to improper vali The vCenter Server contains an SSRF (Server Side Request Forgery) vulnerability due to improper validation of URLs in vCenter Server Content Library. An authorised user with access to content library may exploit this issue by sending a POST request to vCenter Server leading to information disclosure.
nvd
CVE-2025-22222P3MEDIUMCVSS 6.5≥ 4.0, ≤ 5.22025-01-30
CVE-2025-22222 [MEDIUM] CWE-497 CVE-2025-22222: VMware Aria Operations contains an information disclosure vulnerability. A malicious user with non-a VMware Aria Operations contains an information disclosure vulnerability. A malicious user with non-administrative privileges may exploit this vulnerability to retrieve credentials for an outbound plugin if a valid service credential ID is known.
nvd
CVE-2021-21995P4HIGHCVSS 7.5≥ 3.0, < 3.10.2≥ 4.0, < 4.32021-07-13
CVE-2021-21995 [HIGH] CWE-125 CVE-2021-21995: OpenSLP as used in ESXi has a denial-of-service vulnerability due a heap out-of-bounds read issue. A OpenSLP as used in ESXi has a denial-of-service vulnerability due a heap out-of-bounds read issue. A malicious actor with network access to port 427 on ESXi may be able to trigger a heap out-of-bounds read in OpenSLP service resulting in a denial-of-service condition.
nvd
CVE-2025-41239P3HIGHCVSS 7.1v5.x, 4.5.x2025-07-15
CVE-2025-41239 [HIGH] CWE-908 CVE-2025-41239: VMware ESXi, Workstation, Fusion, and VMware Tools contains an information disclosure vulnerability VMware ESXi, Workstation, Fusion, and VMware Tools contains an information disclosure vulnerability due to the usage of an uninitialised memory in vSockets. A malicious actor with local administrative privileges on a virtual machine may be able to exploit this issue to leak memory from processes communicating with vSockets.
nvd
CVE-2025-22220P4MEDIUMCVSS 5.4≥ 4.0, ≤ 5.22025-01-30
CVE-2025-22220 [MEDIUM] CWE-269 CVE-2025-22220: VMware Aria Operations for Logs contains a privilege escalation vulnerability. A malicious actor wit VMware Aria Operations for Logs contains a privilege escalation vulnerability. A malicious actor with non-administrative privileges and network access to Aria Operations for Logs API may be able to perform certain operations in the context of an admin user.
nvd
CVE-2021-21992P4MEDIUMCVSS 6.5≥ 3.0, < 3.10.2.2≥ 4.0, < 4.32021-09-22
CVE-2021-21992 [MEDIUM] CVE-2021-21992: The vCenter Server contains a denial-of-service vulnerability due to improper XML entity parsing. A The vCenter Server contains a denial-of-service vulnerability due to improper XML entity parsing. A malicious actor with non-administrative user access to the vCenter Server vSphere Client (HTML5) or vCenter Server vSphere Web Client (FLEX/Flash) may exploit this issue to create a denial-of-service condition on the vCenter Server host.
nvd
CVE-2024-38832P4MEDIUMCVSS 6.4≥ 4.0, ≤ 5.22024-11-26
CVE-2024-38832 [MEDIUM] CWE-79 CVE-2024-38832: VMware Aria Operations contains a stored cross-site scripting vulnerability. A malicious actor with VMware Aria Operations contains a stored cross-site scripting vulnerability. A malicious actor with editing access to views may be able to inject malicious script leading to stored cross-site scripting in the product VMware Aria Operations.
nvd
CVE-2021-22011P4MEDIUMCVSS 5.3≥ 3.0, < 5.02021-09-23
CVE-2021-22011 [MEDIUM] CVE-2021-22011: vCenter Server contains an unauthenticated API endpoint vulnerability in vCenter Server Content Libr vCenter Server contains an unauthenticated API endpoint vulnerability in vCenter Server Content Library. A malicious actor with network access to port 443 on vCenter Server may exploit this issue to perform unauthenticated VM network setting manipulation.
nvd
CVE-2025-22243P4HIGHCVSS 7.5≥ 4.5, ≤ 5.2.1.22025-06-04
CVE-2025-22243 [HIGH] CWE-79 CVE-2025-22243: VMware NSX Manager UI is vulnerable to a stored Cross-Site Scripting (XSS) attack due to improper in VMware NSX Manager UI is vulnerable to a stored Cross-Site Scripting (XSS) attack due to improper input validation.
nvd
CVE-2021-22040P4MEDIUMCVSS 6.7≥ 3.0, < 3.11≥ 4.0, < 4.42022-02-16
CVE-2021-22040 [MEDIUM] CWE-416 CVE-2021-22040: VMware ESXi, Workstation, and Fusion contain a use-after-free vulnerability in the XHCI USB controll VMware ESXi, Workstation, and Fusion contain a use-after-free vulnerability in the XHCI USB controller. A malicious actor with local administrative privileges on a virtual machine may exploit this issue to execute code as the virtual machine's VMX process running on the host.
nvd