VMware

Cloud Foundation

126 vulnerabilities found.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 0.13%
  • Published 09.10.2024 20:15:07
  • Last modified 10.10.2024 12:51:56

VMware NSX contains a content spoofing vulnerability.  An unauthenticated malicious actor may be able to craft a URL and redirect a victim to an attacker controlled domain leading to sensitive information disclosure.

  • EPSS 1.41%
  • Published 11.07.2024 05:15:10
  • Last modified 14.03.2025 19:15:44

VMware Aria Automation does not apply correct input validation which allows for SQL-injection in the product. An authenticated malicious user could enter specially crafted SQL queries and perform unauthorised read/write operations in the database.

Warning
  • EPSS 65.24%
  • Published 25.06.2024 15:15:12
  • Last modified 20.12.2024 16:52:43

VMware ESXi contains an authentication bypass vulnerability. A malicious actor with sufficient Active Directory (AD) permissions can gain full access to an ESXi host that was previously configured to use AD for user management https://blogs.vmware.c...

Warning
  • EPSS 0.07%
  • Published 25.06.2024 15:15:12
  • Last modified 27.06.2025 13:39:14

VMware ESXi contains an out-of-bounds read vulnerability. A malicious actor with local administrative privileges on a virtual machine with an existing snapshot may trigger an out-of-bounds read leading to a denial-of-service condition of the host.

Warning
  • EPSS 0.31%
  • Published 25.06.2024 15:15:12
  • Last modified 27.06.2025 13:39:54

The vCenter Server contains a denial-of-service vulnerability. A malicious actor with network access to vCenter Server may create a denial-of-service condition.

  • EPSS 56.09%
  • Published 18.06.2024 06:15:11
  • Last modified 21.11.2024 09:23:09

The vCenter Server contains multiple local privilege escalation vulnerabilities due to misconfiguration of sudo. An authenticated local user with non-administrative privileges may exploit these issues to elevate privileges to root on vCenter Server A...

  • EPSS 61.45%
  • Published 21.05.2024 18:15:09
  • Last modified 27.06.2025 13:37:52

The vCenter Server contains an authenticated remote code execution vulnerability. A malicious actor with administrative privileges on the vCenter appliance shell may exploit this issue to run arbitrary commands on the underlying operating system.

  • EPSS 7.25%
  • Published 21.05.2024 18:15:09
  • Last modified 27.06.2025 13:38:06

The vCenter Server contains a partial file read vulnerability. A malicious actor with administrative privileges on the vCenter appliance shell may exploit this issue to partially read arbitrary files containing sensitive data.

  • EPSS 0.22%
  • Published 21.05.2024 18:15:08
  • Last modified 26.03.2025 16:15:19

The storage controllers on VMware ESXi, Workstation, and Fusion have out-of-bounds read/write vulnerability. A malicious actor with access to a virtual machine with storage controllers enabled may exploit this issue to create a denial of service cond...

  • EPSS 0.41%
  • Published 05.03.2024 18:15:48
  • Last modified 07.05.2025 15:37:28

VMware ESXi contains an out-of-bounds write vulnerability. A malicious actor with privileges within the VMX process may trigger an out-of-bounds write leading to an escape of the sandbox.