cbcvebase.

Vmware Tools vulnerabilities

30 known vulnerabilities affecting vmware/vmware_tools.

Total CVEs
30
CISA KEV
0
Public exploits
4
Exploited in wild
0
Severity breakdown
CRITICAL4HIGH9MEDIUM15LOW2

Vulnerabilities

Page 2 of 2
CVE-2010-0205LOWCVSS 2.12010-09-23
CVE-2010-0205 [LOW] VMware Workstation, Player, and ACE address several security issues. VMSA-2010-0014: VMware Workstation, Player, and ACE address several security issues. a. VMware Workstation and Player installer security issue The Workstation 7.x and Player 3.x installers will load an index.htm file located in the current working directory on which Workstation 7.x or Player 3.x is being installed. This may allow an attacker to display a malicious file if they manage to get their file onto
vmware
CVE-2009-1564HIGHCVSS 8.52010-04-09
CVE-2009-1564 [HIGH] VMware hosted products, vCenter Server and ESX patches resolve multiple security issues VMSA-2010-0007: VMware hosted products, vCenter Server and ESX patches resolve multiple security issues a. Windows-based VMware Tools Unsafe Library Loading vulnerability A vulnerability in the way VMware libraries are referenced allows for arbitrary code execution in the context of the logged on user. This vulnerability is present only on Windows Guest Operating Systems. In order for an
vmware
CVE-2007-2052MEDIUMCVSS 5.0PoC2009-11-20
CVE-2007-2052 [MEDIUM] VMware vCenter and ESX update release and vMA patch release address multiple security issues in third party components. VMSA-2009-0016: VMware vCenter and ESX update release and vMA patch release address multiple security issues in third party components. a. JRE Security Update JRE update to version 1.5.0_20, which addresses multiple security issues that existed in earlier releases of JRE. The Common Vulnerabilities and Exposures project (cve.mitre.org) has assigned the f
vmware
CVE-2009-2267MEDIUMCVSS 6.9PoC2009-10-27
CVE-2009-2267 [MEDIUM] VMware hosted products and ESX patches resolve two security issues VMSA-2009-0015: VMware hosted products and ESX patches resolve two security issues a. Mishandled exception on page faults An improper setting of the exception code on page faults may allow for local privilege escalation on the guest operating system. This vulnerability does not affect the host system. VMware would like to thank Tavis Ormandy and Julien Tinnes of the Google Security Team for reporting this
vmware
CVE-2008-1382MEDIUM2009-05-28
CVE-2008-1382 [MEDIUM] VMware Hosted products and ESX and ESXi patches resolve security issues VMSA-2009-0007: VMware Hosted products and ESX and ESXi patches resolve security issues a. VMware Descheduled Time Accounting driver vulnerability may cause a denial of service in Windows based virtual machines. The VMware Descheduled Time Accounting Service is an optional, experimental service that provides improved guest operating system accounting. This patch fixes a denial of service vulnerability
vmware
CVE-2008-4916MEDIUMCVSS 4.62009-04-10
CVE-2008-4916 [MEDIUM] VMware Hosted products and patches for ESX and ESXi resolve a critical security vulnerability VMSA-2009-0006: VMware Hosted products and patches for ESX and ESXi resolve a critical security vulnerability a. Host code execution vulnerability from a guest operating system A critical vulnerability in the virtual machine display function might allow a guest operating system to run code on the host. This issue is different from the vulnerability in a guest virtual device drive
vmware
CVE-2008-3761MEDIUMCVSS 4.6PoC2009-04-03
CVE-2008-3761 [MEDIUM] VMware Hosted products, VI Client and patches for ESX and ESXi resolve multiple security issues VMSA-2009-0005: VMware Hosted products, VI Client and patches for ESX and ESXi resolve multiple security issues a. Denial of service guest to host vulnerability in a virtual device A vulnerability in a guest virtual device driver, could allow a guest operating system to crash the host and consequently any virtual machines on that host. VMware would like to thank Andrew Honig of
vmware
CVE-2008-4225MEDIUMCVSS 4.72009-01-30
CVE-2008-4225 [MEDIUM] ESX patches address an issue loading corrupt virtual disks and update Service Console packages VMSA-2009-0001: ESX patches address an issue loading corrupt virtual disks and update Service Console packages a. Loading a corrupt delta disk may cause ESX to crash If the VMDK delta disk of a snapshot is corrupt, an ESX host might crash when the corrupted disk is loaded. VMDK delta files exist for virtual machines with one or more snapshots. This change ensures that a corrupt
vmware
CVE-2008-4281MEDIUMCVSS 6.92008-11-06
CVE-2008-4281 [MEDIUM] VMware Hosted products and patches for ESX and ESXi resolve two security issues VMSA-2008-0018: VMware Hosted products and patches for ESX and ESXi resolve two security issues a. A privilege escalation on 32-bit and 64-bit guest operating systems VMware products emulate hardware functions and create the possibility to run guest operating systems. A flaw in the CPU hardware emulation might allow the virtual CPU to incorrectly handle the Trap flag. Exploitation of this flaw
vmware
CVE-2006-1721LOWCVSS 2.62008-06-04
CVE-2006-1721 [LOW] Updates to VMware Workstation, VMware Player, VMware ACE, VMware Fusion, VMware Server, VMware VIX API, VMware ESX, VMware ESXi resolve critical security issues VMSA-2008-0009: Updates to VMware Workstation, VMware Player, VMware ACE, VMware Fusion, VMware Server, VMware VIX API, VMware ESX, VMware ESXi resolve critical security issues Updates to VMware Workstation, VMware Player, VMware ACE, VMware Fusion, VMware Server, VMware VIX API, VMware ESX, VMware ESXi resolve criti
vmware
Vmware Tools vulnerabilities | cvebase