Логотип exploitDog
bind:CVE-2023-34046
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2023-34046

Количество 3

Количество 3

nvd логотип

CVE-2023-34046

больше 2 лет назад

VMware Fusion(13.x prior to 13.5) contains a TOCTOU (Time-of-check Time-of-use) vulnerability that occurs during installation for the first time (the user needs to drag or copy the application to a folder from the '.dmg' volume) or when installing an upgrade. A malicious actor with local non-administrative user privileges may exploit this vulnerability to escalate privileges to root on the system where Fusion is installed or being installed for the first time.

CVSS3: 6.7
EPSS: Низкий
github логотип

GHSA-vrpg-hfmh-2gwf

больше 2 лет назад

VMware Fusion(13.x prior to 13.5) contains a TOCTOU (Time-of-check Time-of-use) vulnerability that occurs during installation for the first time (the user needs to drag or copy the application to a folder from the '.dmg' volume) or when installing an upgrade. A malicious actor with local non-administrative user privileges may exploit this vulnerability to escalate privileges to root on the system where Fusion is installed or being installed for the first time.

CVSS3: 6.7
EPSS: Низкий
fstec логотип

BDU:2023-07058

больше 2 лет назад

Уязвимость гипервизора VMware Fusion, связанная с недостатками разграничения доступа, позволяющая нарушителю повысить свои привилегии

CVSS3: 6.7
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2023-34046

VMware Fusion(13.x prior to 13.5) contains a TOCTOU (Time-of-check Time-of-use) vulnerability that occurs during installation for the first time (the user needs to drag or copy the application to a folder from the '.dmg' volume) or when installing an upgrade. A malicious actor with local non-administrative user privileges may exploit this vulnerability to escalate privileges to root on the system where Fusion is installed or being installed for the first time.

CVSS3: 6.7
0%
Низкий
больше 2 лет назад
github логотип
GHSA-vrpg-hfmh-2gwf

VMware Fusion(13.x prior to 13.5) contains a TOCTOU (Time-of-check Time-of-use) vulnerability that occurs during installation for the first time (the user needs to drag or copy the application to a folder from the '.dmg' volume) or when installing an upgrade. A malicious actor with local non-administrative user privileges may exploit this vulnerability to escalate privileges to root on the system where Fusion is installed or being installed for the first time.

CVSS3: 6.7
0%
Низкий
больше 2 лет назад
fstec логотип
BDU:2023-07058

Уязвимость гипервизора VMware Fusion, связанная с недостатками разграничения доступа, позволяющая нарушителю повысить свои привилегии

CVSS3: 6.7
0%
Низкий
больше 2 лет назад

Уязвимостей на страницу