Vmware Workstation vulnerabilities
225 known vulnerabilities affecting vmware/workstation.
Total CVEs
225
CISA KEV
2
actively exploited
Public exploits
18
Exploited in wild
7
Severity breakdown
CRITICAL32HIGH90MEDIUM88LOW15
Vulnerabilities
Page 4 of 12
CVE-2022-31705P3HIGHCVSS 8.2≥ 16.0.0, < 16.2.52022-12-14
CVE-2022-31705 [HIGH] CWE-787 CVE-2022-31705: VMware ESXi, Workstation, and Fusion contain a heap out-of-bounds write vulnerability in the USB 2.0
VMware ESXi, Workstation, and Fusion contain a heap out-of-bounds write vulnerability in the USB 2.0 controller (EHCI). A malicious actor with local administrative privileges on a virtual machine may exploit this issue to execute code as the virtual machine's VMX process running on the host. On ESXi, the exploitation is contained within the VMX sandbo
nvd
CVE-2008-3691P3CRITICALCVSS 10.0≥ 5.5, < 5.5.8≥ 6.0, < 6.0.52008-09-03
CVE-2008-3691 [CRITICAL] CVE-2008-3691: Unspecified vulnerability in a certain ActiveX control in VMware Workstation 5.5.x before 5.5.8 buil
Unspecified vulnerability in a certain ActiveX control in VMware Workstation 5.5.x before 5.5.8 build 108000, VMware Workstation 6.0.x before 6.0.5 build 109488, VMware Player 1.x before 1.0.8 build 108000, VMware Player 2.x before 2.0.5 build 109488, VMware ACE 1.x before 1.0.7 build 108880, VMware ACE 2.x before 2.0.5 build 109488, and VMware Server befor
nvd
CVE-2017-4934P3HIGHCVSS 8.8v12.0.0v12.0.1+11 more2017-11-17
CVE-2017-4934 [HIGH] CWE-119 CVE-2017-4934: VMware Workstation (12.x before 12.5.8) and Fusion (8.x before 8.5.9) contain a heap buffer-overflow
VMware Workstation (12.x before 12.5.8) and Fusion (8.x before 8.5.9) contain a heap buffer-overflow vulnerability in VMNAT device. This issue may allow a guest to execute code on the host.
nvd
CVE-2019-5511P3HIGHCVSS 8.8≥ 14.0.0, < 14.1.6≥ 15.0.0, < 15.0.32019-04-09
CVE-2019-5511 [HIGH] CVE-2019-5511: VMware Workstation (15.x before 15.0.3, 14.x before 14.1.6) running on Windows does not handle paths
VMware Workstation (15.x before 15.0.3, 14.x before 14.1.6) running on Windows does not handle paths appropriately. Successful exploitation of this issue may allow the path to the VMX executable, on a Windows host, to be hijacked by a non-administrator leading to elevation of privilege.
nvd
CVE-2019-5527P3HIGHCVSS 8.8≥ 15.0.0, < 15.5.02019-10-10
CVE-2019-5527 [HIGH] CWE-416 CVE-2019-5527: ESXi, Workstation, Fusion, VMRC and Horizon Client contain a use-after-free vulnerability in the vir
ESXi, Workstation, Fusion, VMRC and Horizon Client contain a use-after-free vulnerability in the virtual sound device. VMware has evaluated the severity of this issue to be in the Important severity range with a maximum CVSSv3 base score of 8.5.
nvd
CVE-2023-20854P3HIGHCVSS 8.4v17.02023-02-03
CVE-2023-20854 [HIGH] CWE-269 CVE-2023-20854: VMware Workstation contains an arbitrary file deletion vulnerability. A malicious actor with local u
VMware Workstation contains an arbitrary file deletion vulnerability. A malicious actor with local user privileges on the victim's machine may exploit this vulnerability to delete arbitrary files from the file system of the machine on which Workstation is installed.
nvd
CVE-2020-3969P3HIGHCVSS 7.8≥ 15.0.0, < 15.5.5v15.x before 15.5.52020-06-24
CVE-2020-3969 [HIGH] CWE-193 CVE-2020-3969: VMware ESXi (7.0 before ESXi_7.0.0-1.20.16321839, 6.7 before ESXi670-202004101-SG and 6.5 before ESX
VMware ESXi (7.0 before ESXi_7.0.0-1.20.16321839, 6.7 before ESXi670-202004101-SG and 6.5 before ESXi650-202005401-SG), Workstation (15.x before 15.5.5), and Fusion (11.x before 11.5.5) contain an off-by-one heap-overflow vulnerability in the SVGA device. A malicious actor with local access to a virtual machine with 3D graphics enabled may be able to ex
nvd
CVE-2008-3696P3CRITICALCVSS 10.0≥ 5.5, < 5.5.8≥ 6.0, < 6.0.52008-09-03
CVE-2008-3696 [CRITICAL] CVE-2008-3696: Unspecified vulnerability in a certain ActiveX control in VMware Workstation 5.5.x before 5.5.8 buil
Unspecified vulnerability in a certain ActiveX control in VMware Workstation 5.5.x before 5.5.8 build 108000, VMware Workstation 6.0.x before 6.0.5 build 109488, VMware Player 1.x before 1.0.8 build 108000, VMware Player 2.x before 2.0.5 build 109488, VMware ACE 1.x before 1.0.7 build 108880, VMware ACE 2.x before 2.0.5 build 109488, and VMware Server befor
nvd
CVE-2008-3694P3CRITICALCVSS 10.0≥ 5.5, < 5.5.8≥ 6.0, < 6.0.52008-09-03
CVE-2008-3694 [CRITICAL] CVE-2008-3694: Unspecified vulnerability in a certain ActiveX control in VMware Workstation 5.5.x before 5.5.8 buil
Unspecified vulnerability in a certain ActiveX control in VMware Workstation 5.5.x before 5.5.8 build 108000, VMware Workstation 6.0.x before 6.0.5 build 109488, VMware Player 1.x before 1.0.8 build 108000, VMware Player 2.x before 2.0.5 build 109488, VMware ACE 1.x before 1.0.7 build 108880, VMware ACE 2.x before 2.0.5 build 109488, and VMware Server befor
nvd
CVE-2008-3692P3CRITICALCVSS 10.0≥ 5.5, < 5.5.8≥ 6.0, < 6.0.52008-09-03
CVE-2008-3692 [CRITICAL] CVE-2008-3692: Unspecified vulnerability in a certain ActiveX control in VMware Workstation 5.5.x before 5.5.8 buil
Unspecified vulnerability in a certain ActiveX control in VMware Workstation 5.5.x before 5.5.8 build 108000, VMware Workstation 6.0.x before 6.0.5 build 109488, VMware Player 1.x before 1.0.8 build 108000, VMware Player 2.x before 2.0.5 build 109488, VMware ACE 1.x before 1.0.7 build 108880, VMware ACE 2.x before 2.0.5 build 109488, and VMware Server befor
nvd
CVE-2008-3693P3CRITICALCVSS 10.0≥ 5.5, < 5.5.8≥ 6.0, < 6.0.52008-09-03
CVE-2008-3693 [CRITICAL] CVE-2008-3693: Unspecified vulnerability in a certain ActiveX control in VMware Workstation 5.5.x before 5.5.8 buil
Unspecified vulnerability in a certain ActiveX control in VMware Workstation 5.5.x before 5.5.8 build 108000, VMware Workstation 6.0.x before 6.0.5 build 109488, VMware Player 1.x before 1.0.8 build 108000, VMware Player 2.x before 2.0.5 build 109488, VMware ACE 1.x before 1.0.7 build 108880, VMware ACE 2.x before 2.0.5 build 109488, and VMware Server befor
nvd
CVE-2008-3695P3CRITICALCVSS 10.0≥ 5.5, < 5.5.8≥ 6.0, < 6.0.52008-09-03
CVE-2008-3695 [CRITICAL] CVE-2008-3695: Unspecified vulnerability in a certain ActiveX control in VMware Workstation 5.5.x before 5.5.8 buil
Unspecified vulnerability in a certain ActiveX control in VMware Workstation 5.5.x before 5.5.8 build 108000, VMware Workstation 6.0.x before 6.0.5 build 109488, VMware Player 1.x before 1.0.8 build 108000, VMware Player 2.x before 2.0.5 build 109488, VMware ACE 1.x before 1.0.7 build 108880, VMware ACE 2.x before 2.0.5 build 109488, and VMware Server befor
nvd
CVE-2024-22267P3HIGHCVSS 8.2≥ 17.0.0, < 17.5.22024-05-14
CVE-2024-22267 [HIGH] CWE-416 CVE-2024-22267: VMware Workstation and Fusion contain a use-after-free vulnerability in the vbluetooth device. A mal
VMware Workstation and Fusion contain a use-after-free vulnerability in the vbluetooth device. A malicious actor with local administrative privileges on a virtual machine may exploit this issue to execute code as the virtual machine's VMX process running on the host.
nvd
CVE-2020-3948P3HIGHCVSS 7.8≥ 15.0.0, < 15.5.2v15.x before 15.5.22020-03-16
CVE-2020-3948 [HIGH] CWE-732 CVE-2020-3948: Linux Guest VMs running on VMware Workstation (15.x before 15.5.2) and Fusion (11.x before 11.5.2) c
Linux Guest VMs running on VMware Workstation (15.x before 15.5.2) and Fusion (11.x before 11.5.2) contain a local privilege escalation vulnerability due to improper file permissions in Cortado Thinprint. Local attackers with non-administrative access to a Linux guest VM with virtual printing enabled may exploit this issue to elevate their privileges to
nvd
CVE-2024-22273P3HIGHCVSS 7.8≥ 17.0.0, < 17.5.12024-05-21
CVE-2024-22273 [HIGH] CWE-125 CVE-2024-22273: The storage controllers on VMware ESXi, Workstation, and Fusion have out-of-bounds read/write vulner
The storage controllers on VMware ESXi, Workstation, and Fusion have out-of-bounds read/write vulnerability. A malicious actor with access to a virtual machine with storage controllers enabled may exploit this issue to create a denial of service condition or execute code on the hypervisor from a virtual machine in conjunction with other issues.
nvd
CVE-2020-3960P3HIGHCVSS 8.4≥ 15.0.0, < 15.5.52021-09-15
CVE-2020-3960 [HIGH] CWE-125 CVE-2020-3960: VMware ESXi (6.7 before ESXi670-202006401-SG and 6.5 before ESXi650-202005401-SG), Workstation (15.x
VMware ESXi (6.7 before ESXi670-202006401-SG and 6.5 before ESXi650-202005401-SG), Workstation (15.x before 15.5.5), and Fusion (11.x before 11.5.5) contain an out-of-bounds read vulnerability in NVMe functionality. A malicious actor with local non-administrative access to a virtual machine with a virtual NVMe controller present may be able to read priv
nvd
CVE-2019-5540P3HIGHCVSS 7.7≥ 15.0.0, < 15.5.12019-11-20
CVE-2019-5540 [HIGH] CWE-401 CVE-2019-5540: VMware Workstation (15.x before 15.5.1) and Fusion (11.x before 11.5.1) contain an information discl
VMware Workstation (15.x before 15.5.1) and Fusion (11.x before 11.5.1) contain an information disclosure vulnerability in vmnetdhcp. Successful exploitation of this issue may allow an attacker on a guest VM to disclose sensitive information by leaking memory from the host process.
nvd
CVE-2020-3982P3HIGHCVSS 7.7≥ 15.0, ≤ 15.5.62020-10-20
CVE-2020-3982 [HIGH] CWE-367 CVE-2020-3982: VMware ESXi (7.0 before ESXi_7.0.1-0.0.16850804, 6.7 before ESXi670-202008101-SG, 6.5 before ESXi650
VMware ESXi (7.0 before ESXi_7.0.1-0.0.16850804, 6.7 before ESXi670-202008101-SG, 6.5 before ESXi650-202007101-SG), Workstation (15.x), Fusion (11.x before 11.5.6) contain an out-of-bounds write vulnerability due to a time-of-check time-of-use issue in ACPI device. A malicious actor with administrative access to a virtual machine may be able to exploit
nvd
CVE-2019-5543P3HIGHCVSS 7.8≥ 15.0.0, < 15.5.22020-03-16
CVE-2019-5543 [HIGH] CWE-732 CVE-2019-5543: For VMware Horizon Client for Windows (5.x and prior before 5.3.0), VMware Remote Console for Window
For VMware Horizon Client for Windows (5.x and prior before 5.3.0), VMware Remote Console for Windows (10.x before 11.0.0), VMware Workstation for Windows (15.x before 15.5.2) the folder containing configuration files for the VMware USB arbitration service was found to be writable by all users. A local user on the system where the software is installed
nvd
CVE-1999-0733P4HIGHCVSS 7.2PoCv1.0.11999-06-26
CVE-1999-0733 [HIGH] CVE-1999-0733: Buffer overflow in VMWare 1.0.1 for Linux via a long HOME environmental variable.
Buffer overflow in VMWare 1.0.1 for Linux via a long HOME environmental variable.
nvd