Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-gwg2-qh78-562m

Опубликовано: 15 мая 2026
Источник: github
Github: Не прошло ревью
CVSS3: 7.8

Описание

VMware Fusion contains a TOCTOU (Time-of-check Time-of-use) vulnerability that occurs during an operation performed by a SETUID binary. A malicious actor with local non-administrative user privileges may exploit this vulnerability to escalate privileges to root on the system where Fusion is installed.

VMware Fusion contains a TOCTOU (Time-of-check Time-of-use) vulnerability that occurs during an operation performed by a SETUID binary. A malicious actor with local non-administrative user privileges may exploit this vulnerability to escalate privileges to root on the system where Fusion is installed.

EPSS

Процентиль: 2%
0.00122
Низкий

7.8 High

CVSS3

Дефекты

CWE-367

Связанные уязвимости

CVSS3: 7.8
nvd
3 месяца назад

VMware Fusion contains a TOCTOU (Time-of-check Time-of-use) vulnerability that occurs during an operation performed by a SETUID binary. A malicious actor with local non-administrative user privileges may exploit this vulnerability to escalate privileges to root on the system where Fusion is installed.

CVSS3: 7.8
fstec
3 месяца назад

Уязвимость файла SETUID гипервизора VMware Fusion, позволяющая нарушителю повысить свои привилегии до уровня root

EPSS

Процентиль: 2%
0.00122
Низкий

7.8 High

CVSS3

Дефекты

CWE-367