CVE-2021-21983
- EPSS 83.18%
- Veröffentlicht 31.03.2021 18:15:14
- Zuletzt bearbeitet 21.11.2024 05:49:22
Arbitrary file write vulnerability in vRealize Operations Manager API (CVE-2021-21983) prior to 8.4 may allow an authenticated malicious actor with network access to the vRealize Operations Manager API can write files to arbitrary locations on the un...
CVE-2021-21974
- EPSS 55.04%
- Veröffentlicht 24.02.2021 17:15:16
- Zuletzt bearbeitet 21.11.2024 05:49:21
OpenSLP as used in ESXi (7.0 before ESXi70U1c-17325551, 6.7 before ESXi670-202102401-SG, 6.5 before ESXi650-202102101-SG) has a heap-overflow vulnerability. A malicious actor residing within the same network segment as ESXi who has access to port 427...
- EPSS 93.82%
- Veröffentlicht 24.02.2021 17:15:15
- Zuletzt bearbeitet 30.10.2025 20:06:27
The vSphere Client (HTML5) contains a remote code execution vulnerability in a vCenter Server plugin. A malicious actor with network access to port 443 may exploit this issue to execute commands with unrestricted privileges on the underlying operatin...
CVE-2021-21973
- EPSS 90.34%
- Veröffentlicht 24.02.2021 17:15:15
- Zuletzt bearbeitet 30.10.2025 20:06:18
The vSphere Client (HTML5) contains an SSRF (Server Side Request Forgery) vulnerability due to improper validation of URLs in a vCenter Server plugin. A malicious actor with network access to port 443 may exploit this issue by sending a POST request ...
CVE-2020-4006
- EPSS 12.83%
- Veröffentlicht 23.11.2020 22:15:12
- Zuletzt bearbeitet 30.10.2025 20:07:02
VMware Workspace One Access, Access Connector, Identity Manager, and Identity Manager Connector address have a command injection vulnerability.
CVE-2020-4004
- EPSS 0.29%
- Veröffentlicht 20.11.2020 20:15:13
- Zuletzt bearbeitet 31.10.2025 11:44:38
VMware ESXi (7.0 before ESXi70U1b-17168206, 6.7 before ESXi670-202011101-SG, 6.5 before ESXi650-202011301-SG), Workstation (15.x before 15.5.7), Fusion (11.x before 11.5.7) contain a use-after-free vulnerability in the XHCI USB controller. A maliciou...
CVE-2020-4005
- EPSS 0.21%
- Veröffentlicht 20.11.2020 20:15:13
- Zuletzt bearbeitet 31.10.2025 11:44:38
VMware ESXi (7.0 before ESXi70U1b-17168206, 6.7 before ESXi670-202011101-SG, 6.5 before ESXi650-202011301-SG) contains a privilege-escalation vulnerability that exists in the way certain system calls are being managed. A malicious actor with privileg...
CVE-2020-3995
- EPSS 0.31%
- Veröffentlicht 20.10.2020 17:15:13
- Zuletzt bearbeitet 21.11.2024 05:32:07
In VMware ESXi (6.7 before ESXi670-201908101-SG, 6.5 before ESXi650-202007101-SG), Workstation (15.x before 15.1.0), Fusion (11.x before 11.1.0), the VMCI host drivers used by VMware hypervisors contain a memory leak vulnerability. A malicious actor ...
CVE-2020-3981
- EPSS 0.14%
- Veröffentlicht 20.10.2020 17:15:12
- Zuletzt bearbeitet 21.11.2024 05:32:06
VMware ESXi (7.0 before ESXi_7.0.1-0.0.16850804, 6.7 before ESXi670-202008101-SG, 6.5 before ESXi650-202007101-SG), Workstation (15.x), Fusion (11.x before 11.5.6) contain an out-of-bounds read vulnerability due to a time-of-check time-of-use issue i...
CVE-2020-3982
- EPSS 0.2%
- Veröffentlicht 20.10.2020 17:15:12
- Zuletzt bearbeitet 21.11.2024 05:32:06
VMware ESXi (7.0 before ESXi_7.0.1-0.0.16850804, 6.7 before ESXi670-202008101-SG, 6.5 before ESXi650-202007101-SG), Workstation (15.x), Fusion (11.x before 11.5.6) contain an out-of-bounds write vulnerability due to a time-of-check time-of-use issue ...