Vmware Tools vulnerabilities

22 known vulnerabilities affecting vmware/tools.

Total CVEs
22
CISA KEV
2
actively exploited
Public exploits
1
Exploited in wild
1
Severity breakdown
HIGH15MEDIUM5LOW2

Vulnerabilities

Page 1 of 2
CVE-2025-41246HIGHCVSS 7.6≥ 13.x.x.x, < 13.0.5.0≥ 12.x.x, < 12.5.4+1 more2025-09-29
CVE-2025-41246 [HIGH] CWE-863 CVE-2025-41246: VMware Tools for Windows contains an improper authorisation vulnerability due to the way it handles VMware Tools for Windows contains an improper authorisation vulnerability due to the way it handles user access controls. A malicious actor with non-administrative privileges on a guest VM, who is already authenticated through vCenter or ESX may exploit this issue to access other guest VMs. Successful exploitation requires knowledge of credentials of t
cvelistv5nvd
CVE-2025-41244HIGHCVSS 7.8KEV≥ 12.5.0, < 12.5.4≥ 13.0.0.0, < 13.0.5.02025-09-29
CVE-2025-41244 [HIGH] CWE-267 CVE-2025-41244: VMware Aria Operations and VMware Tools contain a local privilege escalation vulnerability. A malici VMware Aria Operations and VMware Tools contain a local privilege escalation vulnerability. A malicious local actor with non-administrative privileges having access to a VM with VMware Tools installed and managed by Aria Operations with SDMP enabled may exploit this vulnerability to escalate privileges to root on the same VM.
nvd
CVE-2025-41239HIGHCVSS 7.1≥ 13.x.x, < 13.0.1.0≥ 12.x.x, 11.x.x,, < 12.5.32025-07-15
CVE-2025-41239 [HIGH] CWE-908 CVE-2025-41239: VMware ESXi, Workstation, Fusion, and VMware Tools contains an information disclosure vulnerability VMware ESXi, Workstation, Fusion, and VMware Tools contains an information disclosure vulnerability due to the usage of an uninitialised memory in vSockets. A malicious actor with local administrative privileges on a virtual machine may be able to exploit this issue to leak memory from processes communicating with vSockets.
cvelistv5nvd
CVE-2023-34057HIGHCVSS 7.8≥ 10.3.0, < 12.1.12023-10-27
CVE-2023-34057 [HIGH] CWE-269 CVE-2023-34057: VMware Tools contains a local privilege escalation vulnerability. A malicious actor with local user VMware Tools contains a local privilege escalation vulnerability. A malicious actor with local user access to a guest virtual machine may elevate privileges within the virtual machine.
nvd
CVE-2023-34058HIGHCVSS 7.5≥ 10.3.0, < 12.3.52023-10-27
CVE-2023-34058 [HIGH] CWE-347 CVE-2023-34058: VMware Tools contains a SAML token signature bypass vulnerability. A malicious actor that has been g VMware Tools contains a SAML token signature bypass vulnerability. A malicious actor that has been granted Guest Operation Privileges https://docs.vmware.com/en/VMware-vSphere/8.0/vsphere-security/GUID-6A952214-0E5E-4CCF-9D2A-90948FF643EC.html in a target virtual machine may be able to elevate their privileges if that target virtual machine has been a
nvd
CVE-2023-20900HIGHCVSS 7.5≥ 10.3.0, < 12.3.0≥ 10.3.0, < 10.3.262023-08-31
CVE-2023-20900 [HIGH] CWE-294 CVE-2023-20900: A malicious actor that has been granted Guest Operation Privileges https://docs.vmware.com/en/VMwar A malicious actor that has been granted Guest Operation Privileges https://docs.vmware.com/en/VMware-vSphere/8.0/vsphere-security/GUID-6A952214-0E5E-4CCF-9D2A-90948FF643EC.html in a target virtual machine may be able to elevate their privileges if that target virtual machine has been assigned a more privileged Guest Alias https://vdc-download.vmware.c
nvd
CVE-2023-20867LOWCVSS 3.9KEV≥ 10.3.0, < 12.2.52023-06-13
CVE-2023-20867 [LOW] CWE-287 CVE-2023-20867: A fully compromised ESXi host can force VMware Tools to fail to authenticate host-to-guest operation A fully compromised ESXi host can force VMware Tools to fail to authenticate host-to-guest operations, impacting the confidentiality and integrity of the guest virtual machine.
nvd
CVE-2022-31693MEDIUMCVSS 5.5≥ 10.0.0, < 12.1.52023-06-07
CVE-2022-31693 [MEDIUM] CWE-404 CVE-2022-31693: VMware Tools for Windows (12.x.y prior to 12.1.5, 11.x.y and 10.x.y) contains a denial-of-service vu VMware Tools for Windows (12.x.y prior to 12.1.5, 11.x.y and 10.x.y) contains a denial-of-service vulnerability in the VM3DMP driver. A malicious actor with local user privileges in the Windows guest OS, where VMware Tools is installed, can trigger a PANIC in the VM3DMP driver leading to a denial-of-service condition in the Windows guest OS.
nvd
CVE-2022-31676HIGHCVSS 7.8≥ 10.0.0, < 12.1.0≥ 10.0.0, < 10.3.25+1 more2022-08-23
CVE-2022-31676 [HIGH] CWE-269 CVE-2022-31676: VMware Tools (12.0.0, 11.x.y and 10.x.y) contains a local privilege escalation vulnerability. A mali VMware Tools (12.0.0, 11.x.y and 10.x.y) contains a local privilege escalation vulnerability. A malicious actor with local non-administrative access to the Guest OS can escalate privileges as a root user in the virtual machine.
nvd
CVE-2022-22977HIGHCVSS 7.1≥ 10.0.0, ≤ 10.3.24≥ 11.0.0, ≤ 11.3.5+1 more2022-05-24
CVE-2022-22977 [HIGH] CWE-611 CVE-2022-22977: VMware Tools for Windows(12.0.0, 11.x.y and 10.x.y) contains an XML External Entity (XXE) vulnerabil VMware Tools for Windows(12.0.0, 11.x.y and 10.x.y) contains an XML External Entity (XXE) vulnerability. A malicious actor with non-administrative local user privileges in the Windows guest OS, where VMware Tools is installed, may exploit this issue leading to a denial-of-service condition or unintended information disclosure.
nvd
CVE-2022-22943MEDIUMCVSS 6.7≥ 10.0.0, < 12.0.02022-03-03
CVE-2022-22943 [MEDIUM] CWE-427 CVE-2022-22943: VMware Tools for Windows (11.x.y and 10.x.y prior to 12.0.0) contains an uncontrolled search path vu VMware Tools for Windows (11.x.y and 10.x.y prior to 12.0.0) contains an uncontrolled search path vulnerability. A malicious actor with local administrative privileges in the Windows guest OS, where VMware Tools is installed, may be able to execute code with system privileges in the Windows guest OS due to an uncontrolled search path element.
nvd
CVE-2021-21999HIGHCVSS 7.8≥ 11.0.0, < 11.2.62021-06-23
CVE-2021-21999 [HIGH] CWE-427 CVE-2021-21999: VMware Tools for Windows (11.x.y prior to 11.2.6), VMware Remote Console for Windows (12.x prior to VMware Tools for Windows (11.x.y prior to 11.2.6), VMware Remote Console for Windows (12.x prior to 12.0.1) , VMware App Volumes (2.x prior to 2.18.10 and 4 prior to 2103) contain a local privilege escalation vulnerability. An attacker with normal access to a virtual machine may exploit this issue by placing a malicious file renamed as `openssl.cnf' in
nvd
CVE-2021-21997MEDIUMCVSS 5.5≥ 11.0.0, < 11.3.02021-06-18
CVE-2021-21997 [MEDIUM] CVE-2021-21997: VMware Tools for Windows (11.x.y prior to 11.3.0) contains a denial-of-service vulnerability in the VMware Tools for Windows (11.x.y prior to 11.3.0) contains a denial-of-service vulnerability in the VM3DMP driver. A malicious actor with local user privileges in the Windows guest operating system, where VMware Tools is installed, can trigger a PANIC in the VM3DMP driver leading to a denial-of-service condition in the Windows guest operating system.
nvd
CVE-2020-3972LOWCVSS 3.3≥ 11.0.0, < 11.1.12020-06-19
CVE-2020-3972 [LOW] CVE-2020-3972: VMware Tools for macOS (11.x.x and prior before 11.1.1) contains a denial-of-service vulnerability i VMware Tools for macOS (11.x.x and prior before 11.1.1) contains a denial-of-service vulnerability in the Host-Guest File System (HGFS) implementation. Successful exploitation of this issue may allow attackers with non-admin privileges on guest macOS virtual machines to create a denial-of-service condition on their own VMs.
nvd
CVE-2020-3941HIGHCVSS 7.0≥ 10.0.0, < 11.0.02020-01-15
CVE-2020-3941 [HIGH] CWE-362 CVE-2020-3941: The repair operation of VMware Tools for Windows 10.x.y has a race condition which may allow for pri The repair operation of VMware Tools for Windows 10.x.y has a race condition which may allow for privilege escalation in the Virtual Machine where Tools is installed. This vulnerability is not present in VMware Tools 11.x.y since the affected functionality is not present in VMware Tools 11.
nvd
CVE-2019-5522HIGHCVSS 7.1≥ 10.0.0, < 10.3.102019-06-06
CVE-2019-5522 [HIGH] CWE-125 CVE-2019-5522: VMware Tools for Windows update addresses an out of bounds read vulnerability in vm3dmp driver which VMware Tools for Windows update addresses an out of bounds read vulnerability in vm3dmp driver which is installed with vmtools in Windows guest machines. This issue is present in versions 10.2.x and 10.3.x prior to 10.3.10. A local attacker with non-administrative access to a Windows guest with VMware Tools installed may be able to leak kernel informati
nvd
CVE-2018-6969HIGHCVSS 7.0fixed in 10.3.02018-07-13
CVE-2018-6969 [HIGH] CWE-125 CVE-2018-6969: VMware Tools (10.x and prior before 10.3.0) contains an out-of-bounds read vulnerability in HGFS. Su VMware Tools (10.x and prior before 10.3.0) contains an out-of-bounds read vulnerability in HGFS. Successful exploitation of this issue may lead to information disclosure or may allow attackers to escalate their privileges on the guest VMs. In order to be able to exploit this issue, file sharing must be enabled.
nvd
CVE-2015-5191MEDIUMCVSS 6.7≤ 10.0.82017-07-28
CVE-2015-5191 [MEDIUM] CWE-362 CVE-2015-5191: VMware Tools prior to 10.0.9 contains multiple file system races in libDeployPkg, related to the use VMware Tools prior to 10.0.9 contains multiple file system races in libDeployPkg, related to the use of hard-coded paths under /tmp. Successful exploitation of this issue may result in a local privilege escalation. CVSS:3.0/AV:L/AC:H/PR:L/UI:R/S:U/C:H/I:H/A:H
nvd
CVE-2016-7080HIGHCVSS 7.8≤ 10.0.8v10.0.0+21 more2016-12-29
CVE-2016-7080 [HIGH] CVE-2016-7080: The graphic acceleration functions in VMware Tools 9.x and 10.x before 10.0.9 on OS X allow local us The graphic acceleration functions in VMware Tools 9.x and 10.x before 10.0.9 on OS X allow local users to gain privileges or cause a denial of service (NULL pointer dereference) via unspecified vectors, a different vulnerability than CVE-2016-7079.
nvd
CVE-2016-7079HIGHCVSS 7.8≤ 10.0.8v10.0.0+21 more2016-12-29
CVE-2016-7079 [HIGH] CWE-476 CVE-2016-7079: The graphic acceleration functions in VMware Tools 9.x and 10.x before 10.0.9 on OS X allow local us The graphic acceleration functions in VMware Tools 9.x and 10.x before 10.0.9 on OS X allow local users to gain privileges or cause a denial of service (NULL pointer dereference) via unspecified vectors, a different vulnerability than CVE-2016-7080.
nvd