Skip to main content

Vendor archive

vmware CVEs

Beta · best-effort

1,014 CVEs tagged to vendor vmware145 Critical, 407 High, 418 Medium, 44 Low, 0 Unrated.

CVE-2018-6980

Published Nov 13, 2018

VMware vRealize Log Insight (4.7.x before 4.7.1 and 4.6.x before 4.6.2) contains a vulnerability due to improper authorization in the user registration method. Successful exploita…

CVSS 7.2 · High
Vendor/product tagsBeta · best-effort

CVE-2018-6977

Published Oct 9, 2018

VMware ESXi (6.7, 6.5, 6.0), Workstation (15.x and 14.x) and Fusion (11.x and 10.x) contain a denial-of-service vulnerability due to an infinite loop in a 3D-rendering shader. Suc…

CVSS 6.5 · Medium
evidence mentions
1
Buzz score
11.9
Vendor/product tagsBeta · best-effort

CVE-2018-6979

Published Oct 5, 2018

The VMware Workspace ONE Unified Endpoint Management Console (A/W Console) 9.7.x prior to 9.7.0.3, 9.6.x prior to 9.6.0.7, 9.5.x prior to 9.5.0.16, 9.4.x prior to 9.4.0.22, 9.3.x…

CVSS 7.4 · High
Vendor/product tagsBeta · best-effort

CVE-2018-6976

Published Sep 11, 2018

The VMware Content Locker for iOS prior to 4.14 contains a data protection vulnerability in the SQLite database. This vulnerability relates to unencrypted filenames and associated…

CVSS 5.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2018-6975

Published Sep 11, 2018

The AirWatch Agent for iOS prior to 5.8.1 contains a data protection vulnerability whereby the files and keychain entries in the Agent are not encrypted.

CVSS 5.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-2018-6973

Published Aug 15, 2018

VMware Workstation (14.x before 14.1.3) and Fusion (10.x before 10.1.3) contain an out-of-bounds write vulnerability in the e1000 device. This issue may allow a guest to execute c…

CVSS 8.8 · High
evidence mentions
2
Buzz score
17.5
Vendor/product tagsBeta · best-effort

CVE-2018-6970

Published Aug 13, 2018

VMware Horizon 6 (6.x.x before 6.2.7), Horizon 7 (7.x.x before 7.5.1), and Horizon Client (4.x.x and prior before 4.8.1) contain an out-of-bounds read vulnerability in the Message…

CVSS 6.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-2018-6971

Published Jul 25, 2018

VMware Horizon View Agents (7.x.x before 7.5.1) contain a local information disclosure vulnerability due to insecure logging of credentials in the vmmsi.log file when an account o…

CVSS 7.8 · High
Vendor/product tagsBeta · best-effort

CVE-2018-6969

Published Jul 13, 2018

VMware Tools (10.x and prior before 10.3.0) contains an out-of-bounds read vulnerability in HGFS. Successful exploitation of this issue may lead to information disclosure or may a…

CVSS 7.0 · High
Vendor/product tagsBeta · best-effort

CVE-2018-6968

Published Jun 11, 2018

The VMware AirWatch Agent for Android prior to 8.2 and AirWatch Agent for Windows Mobile prior to 6.5.2 contain a remote code execution vulnerability in real time File Manager cap…

CVSS 10.0 · Critical
evidence mentions
3
Buzz score
21.9
Vendor/product tagsBeta · best-effort

CVE-2018-6961

Published Jun 11, 2018

VMware NSX SD-WAN Edge by VeloCloud prior to version 3.1.0 contains a command injection vulnerability in the local web UI component. This component is disabled by default and shou…

CVSS 8.1 · High
evidence mentions
2
Buzz score
41.0
KEV listed
Vendor/product tagsBeta · best-effort

CVE-2018-6964

Published May 29, 2018

VMware Horizon Client for Linux (4.x before 4.8.0 and prior) contains a local privilege escalation vulnerability due to insecure usage of SUID binary. Successful exploitation of t…

CVSS 7.8 · High
Vendor/product tagsBeta · best-effort

CVE-2018-6963

Published May 22, 2018

VMware Workstation (14.x before 14.1.2) and Fusion (10.x before 10.1.2) contain multiple denial-of-service vulnerabilities that occur due to NULL pointer dereference issues in the…

CVSS 5.5 · Medium
evidence mentions
1
Buzz score
11.9
Vendor/product tagsBeta · best-effort
Showing 601-625 of 1,014 CVEsPage 25 of 41