CVE-2022-22942
- EPSS 14.03%
- Published 13.12.2023 09:15:33
- Last modified 21.11.2024 06:47:39
The vmwgfx driver contains a local privilege escalation vulnerability that allows unprivileged users to gain access to files opened by other processes on the system through a dangling 'file' pointer.
CVE-2021-22055
- EPSS 0.17%
- Published 11.04.2022 20:15:15
- Last modified 21.11.2024 05:49:30
The SchedulerServer in Vmware photon allows remote attackers to inject logs through \r in the package parameter. Attackers can also insert malicious data and fake entries.
CVE-2020-10713
- EPSS 0.26%
- Published 30.07.2020 13:15:10
- Last modified 21.11.2024 04:55:54
A flaw was found in grub2, prior to version 2.06. An attacker may use the GRUB 2 flaw to hijack and tamper the GRUB verification process. This flaw also allows the bypass of Secure Boot protections. In order to load an untrusted or modified kernel, a...
CVE-2016-5333
- EPSS 1.59%
- Published 31.08.2016 01:59:17
- Last modified 12.04.2025 10:46:40
VMware Photos OS OVA 1.0 before 2016-08-14 has a default SSH public key in an authorized_keys file, which allows remote attackers to obtain SSH access by leveraging knowledge of the private key.