Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-fx3w-hj7j-hfgf

Опубликовано: 24 мая 2022
Источник: github
Github: Не прошло ревью
CVSS3: 7.8

Описание

VMware Fusion (11.x before 11.5.2), VMware Remote Console for Mac (11.x and prior before 11.0.1) and Horizon Client for Mac (5.x and prior before 5.4.0) contain a privilege escalation vulnerability due to improper use of setuid binaries. Successful exploitation of this issue may allow attackers with normal user privileges to escalate their privileges to root on the system where Fusion, VMRC or Horizon Client is installed.

VMware Fusion (11.x before 11.5.2), VMware Remote Console for Mac (11.x and prior before 11.0.1) and Horizon Client for Mac (5.x and prior before 5.4.0) contain a privilege escalation vulnerability due to improper use of setuid binaries. Successful exploitation of this issue may allow attackers with normal user privileges to escalate their privileges to root on the system where Fusion, VMRC or Horizon Client is installed.

EPSS

Процентиль: 95%
0.19652
Средний

7.8 High

CVSS3

Дефекты

CWE-269
CWE-59

Связанные уязвимости

CVSS3: 7.8
nvd
почти 6 лет назад

VMware Fusion (11.x before 11.5.2), VMware Remote Console for Mac (11.x and prior before 11.0.1) and Horizon Client for Mac (5.x and prior before 5.4.0) contain a privilege escalation vulnerability due to improper use of setuid binaries. Successful exploitation of this issue may allow attackers with normal user privileges to escalate their privileges to root on the system where Fusion, VMRC or Horizon Client is installed.

CVSS3: 7.8
fstec
почти 6 лет назад

Уязвимость гипервизоров VMware Fusion, Horizon Client for Mac, VMware Remote Console for Mac, связанная с небезопасным управлением привилегиями, позволяющая нарушителю повысить свои привилегии до уровня root

EPSS

Процентиль: 95%
0.19652
Средний

7.8 High

CVSS3

Дефекты

CWE-269
CWE-59