Vulnerabilities in vmware
238 resultsVexday analysis
VMware apresenta baixo volume de risco imediato com apenas 1 CVE catalogado na base, nenhum sob exploração ativa (KEV). A vulnerabilidade não é crítica e não foi publicada recentemente, reduzindo a urgência de remediação, embora a fraqueza dominante (CWE-640: autenticação fraca) mereça atenção em revisões de segurança preventivas.
CVE-2017-4903—VMware ESXi 6.5 without patch ESXi650-201703410-SG, 6.0 U3 without patch ESXi600-201703401-SG, 6.0 U2 without patch ESXi600-201703403-SG, 6.EPSS 0.4%CVE-2017-4948—VMware Workstation (14.x before 14.1.0 and 12.x) and Horizon View Client (4.x before 4.7.0) contain an out-of-bounds read vulnerability in TEPSS 0.4%CVE-2024-38833MEDIUMStored cross-site scripting vulnerability (CVE-2024-38833)EPSS 0.4%CVE-2018-6963—VMware Workstation (14.x before 14.1.2) and Fusion (10.x before 10.1.2) contain multiple denial-of-service vulnerabilities that occur due toEPSS 0.4%CVE-2026-41723HIGHVMSA-2026-0004: VMware Cloud Foundation Operations updates address multiple vulnerabilities (CVE-2026-41722, CVE-2026-41723 and CVE-2026-41724)EPSS 0.4%CVE-2024-22266MEDIUMVMware Avi Load Balancer updates address multiple vulnerabilitiesEPSS 0.4%CVE-2018-6969—VMware Tools (10.x and prior before 10.3.0) contains an out-of-bounds read vulnerability in HGFS. Successful exploitation of this issue may EPSS 0.4%CVE-2017-4932—VMware AirWatch Launcher for Android prior to 3.2.2 contains a vulnerability that could allow an escalation of privilege from the launcher UEPSS 0.4%CVE-2017-4898—VMware Workstation Pro/Player 12.x before 12.5.3 contains a DLL loading vulnerability that occurs due to the "vmware-vmx" process loading DLEPSS 0.4%CVE-2017-4935—VMware Workstation (12.x before 12.5.8) and Horizon View Client for Windows (4.x before 4.6.1) contain an out-of-bounds write vulnerability EPSS 0.4%CVE-2017-4937—VMware Workstation (12.x before 12.5.8) and Horizon View Client for Windows (4.x before 4.6.1) contain an out-of-bounds read vulnerability iEPSS 0.4%CVE-2025-41238CRITICALPVSCSI heap-overflow vulnerabilityEPSS 0.4%CVE-2017-4936—VMware Workstation (12.x before 12.5.8) and Horizon View Client for Windows (4.x before 4.6.1) contain an out-of-bounds read vulnerability iEPSS 0.4%CVE-2025-41237CRITICALVMCI integer-underflow vulnerabilityEPSS 0.4%CVE-2025-22221MEDIUMVMware Aria Operations for Logs stored cross-site scripting vulnerability (CVE-2025-22221)EPSS 0.4%CVE-2019-5543—For VMware Horizon Client for Windows (5.x and prior before 5.3.0), VMware Remote Console for Windows (10.x before 11.0.0), VMware WorkstatiEPSS 0.4%CVE-2017-4913—VMware Workstation (12.x prior to 12.5.3) and Horizon View Client (4.x prior to 4.4.0) contain an integer-overflow vulnerability in the TrueEPSS 0.4%CVE-2018-6964—VMware Horizon Client for Linux (4.x before 4.8.0 and prior) contains a local privilege escalation vulnerability due to insecure usage of SUEPSS 0.4%CVE-2017-4925—VMware ESXi 6.5 without patch ESXi650-201707101-SG, ESXi 6.0 without patch ESXi600-201706101-SG, ESXi 5.5 without patch ESXi550-201709101-SGEPSS 0.4%CVE-2026-41709LOWESX insufficient logging vulnerabilityEPSS 0.4%