VMware

Cloud Foundation

131 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
Warnung Medienbericht Exploit
  • EPSS 0.94%
  • Veröffentlicht 29.09.2025 17:15:30
  • Zuletzt bearbeitet 06.11.2025 13:58:13

VMware Aria Operations and VMware Tools contain a local privilege escalation vulnerability. A malicious local actor with non-administrative privileges having access to a VM with VMware Tools installed and managed by Aria Operations with SDMP enabled ...

Medienbericht
  • EPSS 0.03%
  • Veröffentlicht 04.06.2025 19:32:42
  • Zuletzt bearbeitet 14.07.2025 17:22:07

VMware NSX contains a stored Cross-Site Scripting (XSS) vulnerability in the router port due to improper input validation.

Medienbericht
  • EPSS 0.03%
  • Veröffentlicht 04.06.2025 19:32:17
  • Zuletzt bearbeitet 14.07.2025 17:22:22

VMware NSX contains a stored Cross-Site Scripting (XSS) vulnerability in the gateway firewall due to improper input validation.

Medienbericht
  • EPSS 0.03%
  • Veröffentlicht 04.06.2025 19:31:36
  • Zuletzt bearbeitet 14.07.2025 17:22:34

VMware NSX Manager UI is vulnerable to a stored Cross-Site Scripting (XSS) attack due to improper input validation.

Medienbericht
  • EPSS 0.02%
  • Veröffentlicht 20.05.2025 13:15:48
  • Zuletzt bearbeitet 12.06.2025 16:22:47

VMware Cloud Foundation contains a missing authorisation vulnerability. A malicious actor with access to VMware Cloud Foundation appliance may be able to perform certain unauthorised actions and access limited sensitive information.

Medienbericht
  • EPSS 0.04%
  • Veröffentlicht 13.05.2025 05:08:03
  • Zuletzt bearbeitet 11.07.2025 14:27:30

VMware Aria automation contains a DOM based Cross-Site Scripting (XSS) vulnerability. A malicious actor may exploit this issue to steal the access token of a logged in user of VMware Aria automation appliance by tricking the user into clicking a mali...

Warnung Medienbericht
  • EPSS 48.22%
  • Veröffentlicht 04.03.2025 12:15:33
  • Zuletzt bearbeitet 30.10.2025 19:52:49

VMware ESXi, and Workstation contain a TOCTOU (Time-of-Check Time-of-Use) vulnerability that leads to an out-of-bounds write. A malicious actor with local administrative privileges on a virtual machine may exploit this issue to execute code as the vi...

Warnung
  • EPSS 4.19%
  • Veröffentlicht 04.03.2025 12:15:33
  • Zuletzt bearbeitet 30.10.2025 19:52:45

VMware ESXi contains an arbitrary write vulnerability. A malicious actor with privileges within the VMX process may trigger an arbitrary kernel write leading to an escape of the sandbox.

Warnung
  • EPSS 3.96%
  • Veröffentlicht 04.03.2025 12:15:33
  • Zuletzt bearbeitet 30.10.2025 19:52:41

VMware ESXi, Workstation, and Fusion contain an information disclosure vulnerability due to an out-of-bounds read in HGFS. A malicious actor with administrative privileges to a virtual machine may be able to exploit this issue to leak memory from the...

  • EPSS 0.2%
  • Veröffentlicht 30.01.2025 16:15:31
  • Zuletzt bearbeitet 14.05.2025 16:46:17

VMware Aria Operations for Logs contains a stored cross-site scripting vulnerability. A malicious actor with non-administrative privileges may be able to inject a malicious script that (can perform stored cross-site scripting) may lead to arbitrary ...