VMware Tools是美国威睿(VMware)公司的一款VMWare虚拟机自带的增强工具,它是VMware提供的用于增强虚拟显卡和硬盘性能、以及同步虚拟机与主机时钟的驱动程序。 VMware Tools 12.0.0、11.x.y和10.x.y版本存在安全漏洞,该漏洞源于其对Guest OS具有本地非管理权限的攻击者可以在虚拟机中提升至根用户权限导致权限升级。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| - | VMware Tools | VMware Tools (12.0.0, 11.x.y and 10.x.y) | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2022-24381 | 7.5 HIGH | Denial of Service (DoS) |
| CVE-2022-25888 | 7.5 HIGH | Denial of Service (DoS) |
| CVE-2022-25761 | 7.5 HIGH | Denial of Service (DoS) |
| CVE-2022-24298 | 7.5 HIGH | Denial of Service (DoS) |
| CVE-2022-21208 | 7.5 HIGH | Denial of Service (DoS) |
| CVE-2022-25231 | 7.5 HIGH | Denial of Service (DoS) |
| CVE-2022-25304 | 7.5 HIGH | Denial of Service (DoS) |
| CVE-2022-25302 | 7.5 HIGH | Denial of Service (DoS) |
| CVE-2022-37428 | 6.5 MEDIUM | PowerDNS Recursor 安全漏洞 |
| CVE-2021-3839 | DPDK 缓冲区错误漏洞 | |
| CVE-2021-3690 | Red Hat JBoss Enterprise Application Platform资源管理错误漏洞 | |
| CVE-2022-35115 | IceWarp WebClient SQL注入漏洞 | |
| CVE-2020-35509 | Red Hat Keycloak 信任管理问题漏洞 | |
| CVE-2021-3827 | Red Hat Keycloak 授权问题漏洞 | |
| CVE-2021-3798 | openCryptoki 安全漏洞 | |
| CVE-2022-37111 | BlueCMS SQL注入漏洞 | |
| CVE-2022-37112 | BlueCMS SQL注入漏洞 | |
| CVE-2022-37113 | BlueCMS SQL注入漏洞 | |
| CVE-2022-37223 | jfinal cms SQL注入漏洞 | |
| CVE-2022-37199 | jfinal cms SQL注入漏洞 |
Showing top 20 of 54 CVEs. View all on vendor page → →
No comments yet