Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-325x-vgx6-jr39

Опубликовано: 25 мая 2022
Источник: github
Github: Не прошло ревью
CVSS3: 7.1

Описание

VMware Tools for Windows(12.0.0, 11.x.y and 10.x.y) contains an XML External Entity (XXE) vulnerability. A malicious actor with non-administrative local user privileges in the Windows guest OS, where VMware Tools is installed, may exploit this issue leading to a denial-of-service condition or unintended information disclosure.

VMware Tools for Windows(12.0.0, 11.x.y and 10.x.y) contains an XML External Entity (XXE) vulnerability. A malicious actor with non-administrative local user privileges in the Windows guest OS, where VMware Tools is installed, may exploit this issue leading to a denial-of-service condition or unintended information disclosure.

EPSS

Процентиль: 12%
0.0004
Низкий

7.1 High

CVSS3

Дефекты

CWE-611

Связанные уязвимости

CVSS3: 7.1
nvd
больше 3 лет назад

VMware Tools for Windows(12.0.0, 11.x.y and 10.x.y) contains an XML External Entity (XXE) vulnerability. A malicious actor with non-administrative local user privileges in the Windows guest OS, where VMware Tools is installed, may exploit this issue leading to a denial-of-service condition or unintended information disclosure.

CVSS3: 5.8
fstec
почти 4 года назад

Уязвимость набора утилит VMware Tools для операционных систем Windows, позволяющая нарушителю позволяющая нарушителю проводить XXE-атаки

EPSS

Процентиль: 12%
0.0004
Низкий

7.1 High

CVSS3

Дефекты

CWE-611