CVE-2020-4006
- EPSS 12.34%
- Veröffentlicht 23.11.2020 22:15:12
- Zuletzt bearbeitet 30.10.2025 20:07:02
VMware Workspace One Access, Access Connector, Identity Manager, and Identity Manager Connector address have a command injection vulnerability.
CVE-2020-4004
- EPSS 0.37%
- Veröffentlicht 20.11.2020 20:15:13
- Zuletzt bearbeitet 31.10.2025 11:44:38
VMware ESXi (7.0 before ESXi70U1b-17168206, 6.7 before ESXi670-202011101-SG, 6.5 before ESXi650-202011301-SG), Workstation (15.x before 15.5.7), Fusion (11.x before 11.5.7) contain a use-after-free vulnerability in the XHCI USB controller. A maliciou...
CVE-2020-4005
- EPSS 0.21%
- Veröffentlicht 20.11.2020 20:15:13
- Zuletzt bearbeitet 31.10.2025 11:44:38
VMware ESXi (7.0 before ESXi70U1b-17168206, 6.7 before ESXi670-202011101-SG, 6.5 before ESXi650-202011301-SG) contains a privilege-escalation vulnerability that exists in the way certain system calls are being managed. A malicious actor with privileg...
CVE-2020-3995
- EPSS 0.37%
- Veröffentlicht 20.10.2020 17:15:13
- Zuletzt bearbeitet 21.11.2024 05:32:07
In VMware ESXi (6.7 before ESXi670-201908101-SG, 6.5 before ESXi650-202007101-SG), Workstation (15.x before 15.1.0), Fusion (11.x before 11.1.0), the VMCI host drivers used by VMware hypervisors contain a memory leak vulnerability. A malicious actor ...
CVE-2020-3981
- EPSS 0.2%
- Veröffentlicht 20.10.2020 17:15:12
- Zuletzt bearbeitet 21.11.2024 05:32:06
VMware ESXi (7.0 before ESXi_7.0.1-0.0.16850804, 6.7 before ESXi670-202008101-SG, 6.5 before ESXi650-202007101-SG), Workstation (15.x), Fusion (11.x before 11.5.6) contain an out-of-bounds read vulnerability due to a time-of-check time-of-use issue i...
CVE-2020-3982
- EPSS 0.24%
- Veröffentlicht 20.10.2020 17:15:12
- Zuletzt bearbeitet 21.11.2024 05:32:06
VMware ESXi (7.0 before ESXi_7.0.1-0.0.16850804, 6.7 before ESXi670-202008101-SG, 6.5 before ESXi650-202007101-SG), Workstation (15.x), Fusion (11.x before 11.5.6) contain an out-of-bounds write vulnerability due to a time-of-check time-of-use issue ...
- EPSS 83.5%
- Veröffentlicht 20.10.2020 17:15:12
- Zuletzt bearbeitet 30.10.2025 20:07:10
OpenSLP as used in VMware ESXi (7.0 before ESXi_7.0.1-0.0.16850804, 6.7 before ESXi670-202010401-SG, 6.5 before ESXi650-202010401-SG) has a use-after-free issue. A malicious actor residing in the management network who has access to port 427 on an ES...
CVE-2020-3993
- EPSS 0.32%
- Veröffentlicht 20.10.2020 17:15:12
- Zuletzt bearbeitet 13.08.2025 12:52:10
VMware NSX-T (3.x before 3.0.2, 2.5.x before 2.5.2.2.0) contains a security vulnerability that exists in the way it allows a KVM host to download and install packages from NSX manager. A malicious actor with MITM positioning may be able to exploit th...
CVE-2020-3994
- EPSS 0.13%
- Veröffentlicht 20.10.2020 17:15:12
- Zuletzt bearbeitet 21.11.2024 05:32:07
VMware vCenter Server (6.7 before 6.7u3, 6.6 before 6.5u3k) contains a session hijack vulnerability in the vCenter Server Appliance Management Interface update function due to a lack of certificate validation. A malicious actor with network positioni...
CVE-2020-3976
- EPSS 2.5%
- Veröffentlicht 21.08.2020 13:15:14
- Zuletzt bearbeitet 21.11.2024 05:32:05
VMware ESXi and vCenter Server contain a partial denial of service vulnerability in their respective authentication services. VMware has evaluated the severity of this issue to be in the Moderate severity range with a maximum CVSSv3 base score of 5.3...