Vmware Workstation vulnerabilities
225 known vulnerabilities affecting vmware/workstation.
Total CVEs
225
CISA KEV
2
actively exploited
Public exploits
18
Exploited in wild
7
Severity breakdown
CRITICAL32HIGH90MEDIUM88LOW15
Vulnerabilities
Page 10 of 12
CVE-2017-4945P4MEDIUMCVSS 5.5v12.0.0v12.0.1+16 more2018-01-05
CVE-2017-4945 [MEDIUM] CVE-2017-4945: VMware Workstation (14.x and 12.x) and Fusion (10.x and 8.x) contain a guest access control vulnerab
VMware Workstation (14.x and 12.x) and Fusion (10.x and 8.x) contain a guest access control vulnerability. This issue may allow program execution via Unity on locked Windows VMs. VMware Tools must be updated to 10.2.0 for each VM to resolve CVE-2017-4945. VMware Tools 10.2.0 is consumed by Workstation 14.1.0 and Fusion 10.1.0 by default.
nvd
CVE-2007-1056P4HIGHCVSS 7.2v5.5.3_build_346852007-02-21
CVE-2007-1056 [HIGH] CWE-264 CVE-2007-1056: VMware Workstation 5.5.3 build 34685 does not provide per-user restrictions on certain privileged ac
VMware Workstation 5.5.3 build 34685 does not provide per-user restrictions on certain privileged actions, which allows local users to perform restricted operations such as changing system time, accessing hardware components, and stopping the "VMware tools service" service. NOTE: exploitation is simplified via (1) weak file permissions (Users = Read & E
nvd
CVE-2015-2340P4MEDIUMCVSS 6.1v10.0v10.0.1+6 more2015-06-13
CVE-2015-2340 [MEDIUM] CWE-399 CVE-2015-2340: TPInt.dll in VMware Workstation 10.x before 10.0.6 and 11.x before 11.1.1, VMware Player 6.x before
TPInt.dll in VMware Workstation 10.x before 10.0.6 and 11.x before 11.1.1, VMware Player 6.x before 6.0.6 and 7.x before 7.1.1, and VMware Horizon Client 3.2.x before 3.2.1, 3.3.x, and 5.x local-mode before 5.4.2 on Windows does not properly allocate memory, which allows guest OS users to cause a host OS denial of service via unspecified vectors.
nvd
CVE-2020-3958P4MEDIUMCVSS 5.5≥ 15.0.0, < 15.5.22020-05-29
CVE-2020-3958 [MEDIUM] CWE-617 CVE-2020-3958: VMware ESXi (6.7 before ESXi670-202004101-SG and 6.5 before ESXi650-202005401-SG), VMware Workstatio
VMware ESXi (6.7 before ESXi670-202004101-SG and 6.5 before ESXi650-202005401-SG), VMware Workstation (15.x before 15.5.2) and VMware Fusion (11.x before 11.5.2) contain a denial-of-service vulnerability in the shader functionality. Successful exploitation of this issue may allow attackers with non-administrative access to a virtual machine to crash t
nvd
CVE-2025-41227P4MEDIUMCVSS 5.5≥ 17.x, < 17.6.32025-05-20
CVE-2025-41227 [MEDIUM] CWE-400 CVE-2025-41227: VMware ESXi, Workstation, and Fusion contain a denial-of-service vulnerability due to certain guest
VMware ESXi, Workstation, and Fusion contain a denial-of-service vulnerability due to certain guest options. A malicious actor with non-administrative privileges within a guest operating system may be able to exploit this issue by exhausting memory of the host process leading to a denial-of-service condition.
nvd
CVE-2026-22716P4MEDIUMCVSS 5.0≥ 25H2, < 25H2U12026-02-27
CVE-2026-22716 [MEDIUM] CWE-787 CVE-2026-22716: Out-of-bound write vulnerability in VMware Workstation 25H1 and below on any platform allows an acto
Out-of-bound write vulnerability in VMware Workstation 25H1 and below on any platform allows an actor with non-administrative privileges on a guest VM to terminate certain Workstation processes.
nvd
CVE-2007-1876P4HIGHCVSS 7.2≤ 5.5.32007-05-02
CVE-2007-1876 [HIGH] CVE-2007-1876: VMware Workstation before 5.5.4, when running a 64-bit Windows guest on a 64-bit host, allows local
VMware Workstation before 5.5.4, when running a 64-bit Windows guest on a 64-bit host, allows local users to "corrupt the virtual machine's register context" by debugging a local program and stepping into a "syscall instruction."
nvd
CVE-2011-1126P4MEDIUMCVSS 6.9v6.5.0v6.5.1+10 more2011-04-04
CVE-2011-1126 [MEDIUM] CWE-264 CVE-2011-1126: VMware vmrun, as used in VIX API 1.x before 1.10.3 and VMware Workstation 6.5.x and 7.x before 7.1.4
VMware vmrun, as used in VIX API 1.x before 1.10.3 and VMware Workstation 6.5.x and 7.x before 7.1.4 build 385536 on Linux, might allow local users to gain privileges via a Trojan horse shared library in an unspecified directory.
nvd
CVE-2010-1140P4MEDIUMCVSS 6.9v7.02010-04-12
CVE-2010-1140 [MEDIUM] CWE-264 CVE-2010-1140: The USB service in VMware Workstation 7.0 before 7.0.1 build 227600 and VMware Player 3.0 before 3.0
The USB service in VMware Workstation 7.0 before 7.0.1 build 227600 and VMware Player 3.0 before 3.0.1 build 227600 on Windows might allow host OS users to gain privileges by placing a Trojan horse program at an unspecified location on the host OS disk.
nvd
CVE-2014-4199P4MEDIUMCVSS 6.3≤ 10.0.3v10.0+2 more2014-08-28
CVE-2014-4199 [MEDIUM] CWE-59 CVE-2014-4199: vm-support 0.88 in VMware Tools, as distributed with VMware Workstation through 10.0.3 and other pro
vm-support 0.88 in VMware Tools, as distributed with VMware Workstation through 10.0.3 and other products, allows local users to write to arbitrary files via a symlink attack on a file in /tmp.
nvd
CVE-2017-4925P4MEDIUMCVSS 5.5≥ 12.0.0, < 12.5.3v12.x before 12.5.32017-09-15
CVE-2017-4925 [MEDIUM] CWE-476 CVE-2017-4925: VMware ESXi 6.5 without patch ESXi650-201707101-SG, ESXi 6.0 without patch ESXi600-201706101-SG, ESX
VMware ESXi 6.5 without patch ESXi650-201707101-SG, ESXi 6.0 without patch ESXi600-201706101-SG, ESXi 5.5 without patch ESXi550-201709101-SG, Workstation (12.x before 12.5.3), Fusion (8.x before 8.5.4) contain a NULL pointer dereference vulnerability. This issue occurs when handling guest RPC requests. Successful exploitation of this issue may allow a
nvd
CVE-2003-0631P4HIGHCVSS 7.2v4.02003-08-27
CVE-2003-0631 [HIGH] CVE-2003-0631: VMware GSX Server 2.5.1 build 4968 and earlier, and Workstation 4.0 and earlier, allows local users
VMware GSX Server 2.5.1 build 4968 and earlier, and Workstation 4.0 and earlier, allows local users to gain root privileges via certain enivronment variables that are used when launching a virtual machine session.
nvd
CVE-2020-3964P4MEDIUMCVSS 4.7≥ 15.0.0, < 15.5.2v15.x before 15.5.22020-06-25
CVE-2020-3964 [MEDIUM] CWE-908 CVE-2020-3964: VMware ESXi (7.0 before ESXi_7.0.0-1.20.16321839, 6.7 before ESXi670-202006401-SG and 6.5 before ESX
VMware ESXi (7.0 before ESXi_7.0.0-1.20.16321839, 6.7 before ESXi670-202006401-SG and 6.5 before ESXi650-202005401-SG), Workstation (15.x before 15.5.2), and Fusion (11.x before 11.5.2) contain an information leak in the EHCI USB controller. A malicious actor with local access to a virtual machine may be able to read privileged information contained i
nvd
CVE-2008-4279P4MEDIUMCVSS 6.8≥ 5.5, < 5.5.8≥ 6.0, < 6.0.52008-10-06
CVE-2008-4279 [MEDIUM] CWE-264 CVE-2008-4279: The CPU hardware emulation for 64-bit guest operating systems in VMware Workstation 6.0.x before 6.0
The CPU hardware emulation for 64-bit guest operating systems in VMware Workstation 6.0.x before 6.0.5 build 109488 and 5.x before 5.5.8 build 108000; Player 2.0.x before 2.0.5 build 109488 and 1.x before 1.0.8; Server 1.x before 1.0.7 build 108231; and ESX 2.5.4 through 3.5 allows authenticated guest OS users to gain additional guest OS privileges by
nvd
CVE-2007-5671P4MEDIUMCVSS 4.4v5.5.1v5.5.3+1 more2008-06-05
CVE-2007-5671 [MEDIUM] CWE-20 CVE-2007-5671: HGFS.sys in the VMware Tools package in VMware Workstation 5.x before 5.5.6 build 80404, VMware Play
HGFS.sys in the VMware Tools package in VMware Workstation 5.x before 5.5.6 build 80404, VMware Player before 1.0.6 build 80404, VMware ACE before 1.0.5 build 79846, VMware Server before 1.0.5 build 80187, and VMware ESX 2.5.4 through 3.0.2 does not properly validate arguments in user-mode METHOD_NEITHER IOCTLs to the \\.\hgfs device, which allows gues
nvd
CVE-2018-6963P4MEDIUMCVSS 5.5≥ 14.0, < 14.1.2v14.x before 14.1.22018-05-22
CVE-2018-6963 [MEDIUM] CWE-476 CVE-2018-6963: VMware Workstation (14.x before 14.1.2) and Fusion (10.x before 10.1.2) contain multiple denial-of-s
VMware Workstation (14.x before 14.1.2) and Fusion (10.x before 10.1.2) contain multiple denial-of-service vulnerabilities that occur due to NULL pointer dereference issues in the RPC handler. Successful exploitation of these issues may allow an attacker with limited privileges on the guest machine trigger a denial-of-Service of their guest machine.
nvd
CVE-2005-2939P4HIGHCVSS 7.2v5.0.0_build_131242005-11-18
CVE-2005-2939 [HIGH] CVE-2005-2939: Unquoted Windows search path vulnerability in VMWare Workstation 5.0.0 build-13124 might allow local
Unquoted Windows search path vulnerability in VMWare Workstation 5.0.0 build-13124 might allow local users to gain privileges via a malicious "program.exe" file in the C: folder.
nvd
CVE-2019-5535P4MEDIUMCVSS 4.7≥ 15.0.0, < 15.5.02019-10-10
CVE-2019-5535 [MEDIUM] CVE-2019-5535: VMware Workstation and Fusion contain a network denial-of-service vulnerability due to improper hand
VMware Workstation and Fusion contain a network denial-of-service vulnerability due to improper handling of certain IPv6 packets. VMware has evaluated the severity of this issue to be in the Moderate severity range with a maximum CVSSv3 base score of 4.7.
nvd
CVE-2007-4591P4MEDIUMCVSS 6.9v6.02007-08-29
CVE-2007-4591 [MEDIUM] CVE-2007-4591: vstor-ws60.sys in VMWare Workstation 6.0 allows local users to cause a denial of service (host opera
vstor-ws60.sys in VMWare Workstation 6.0 allows local users to cause a denial of service (host operating system crash) and possibly gain privileges by sending a small file buffer size value to the FsSetVolumeInformation IOCTL handler with an FsSetFileInformation subcode.
nvd
CVE-2008-0967P4MEDIUMCVSS 6.9v5.5.1v5.5.3+2 more2008-06-05
CVE-2008-0967 [MEDIUM] CVE-2008-0967: Untrusted search path vulnerability in vmware-authd in VMware Workstation 5.x before 5.5.7 build 917
Untrusted search path vulnerability in vmware-authd in VMware Workstation 5.x before 5.5.7 build 91707 and 6.x before 6.0.4 build 93057, VMware Player 1.x before 1.0.7 build 91707 and 2.x before 2.0.4 build 93057, and VMware Server before 1.0.6 build 91891 on Linux, and VMware ESXi 3.5 and VMware ESX 2.5.4 through 3.5, allows local users to gain privileges vi
nvd