CVEs (139)
CVE VENDORS PRODUCTS UPDATED PUBLISHED CVSS |
|---|
ESXi contains a slow HTTP POST denial-of-service vulnerability in rhttpproxy. A malicious actor with network access to ESXi may exploit this issue to create a denial-of-service condition by overwhelming rhttpproxy servic...Show more |
VMware ESXi contains a TOCTOU (Time-of-check Time-of-use) vulnerability that exists in the way temporary files are handled. A malicious actor with access to settingsd, may exploit this issue to escalate their privileges...Show more |
VMware ESXi contains an unauthorized access vulnerability due to VMX having access to settingsd authorization tickets. A malicious actor with privileges within the VMX process only, may be able to access settingsd servic...Show more |
1Vmware 4Cloud Foundation EsxiFusion+1 moreJun 17, 2026 Feb 16, 2022 N/A· v4 6.7 MEDIUM· v3 4.6 MEDIUM· v2 VMware ESXi, Workstation, and Fusion contain a double-fetch vulnerability in the UHCI USB controller. A malicious actor with local administrative privileges on a virtual machine may exploit this issue to execute code as...Show more |
1Vmware 5Cloud Foundation EsxiFusion+2 moreJun 17, 2026 Feb 16, 2022 N/A· v4 6.7 MEDIUM· v3 4.6 MEDIUM· v2 VMware ESXi, Workstation, and Fusion contain a use-after-free vulnerability in the XHCI USB controller. A malicious actor with local administrative privileges on a virtual machine may exploit this issue to execute code a...Show more |
1Vmware 4Cloud Foundation EsxiFusion+1 moreJun 17, 2026 Jan 4, 2022 N/A· v4 7.8 HIGH· v3 6.9 MEDIUM· v2 VMware ESXi (7.0, 6.7 before ESXi670-202111101-SG and 6.5 before ESXi650-202110101-SG), VMware Workstation (16.2.0) and VMware Fusion (12.2.0) contains a heap-overflow vulnerability in CD-ROM device emulation. A maliciou...Show more |
OpenSLP as used in ESXi has a denial-of-service vulnerability due a heap out-of-bounds read issue. A malicious actor with network access to port 427 on ESXi may be able to trigger a heap out-of-bounds read in OpenSLP ser...Show more |
1Vmware 2Cloud Foundation EsxiJun 17, 2026 Jul 13, 2021 N/A· v4 9.8 CRITICAL· v3 6.8 MEDIUM· v2 SFCB (Small Footprint CIM Broker) as used in ESXi has an authentication bypass vulnerability. A malicious actor with network access to port 5989 on ESXi may exploit this issue to bypass SFCB authentication by sending a s...Show more |
OpenSLP as used in ESXi (7.0 before ESXi70U1c-17325551, 6.7 before ESXi670-202102401-SG, 6.5 before ESXi650-202102101-SG) has a heap-overflow vulnerability. A malicious actor residing within the same network segment as E...Show more |
VMware ESXi (7.0 prior to ESXi70U1c-17325551), VMware Workstation (16.x prior to 16.0 and 15.x prior to 15.5.7), VMware Fusion (12.x prior to 12.0 and 11.x prior to 11.5.7) and VMware Cloud Foundation contain a denial of...Show more |
VMware ESXi (7.0 before ESXi70U1b-17168206, 6.7 before ESXi670-202011101-SG, 6.5 before ESXi650-202011301-SG) contains a privilege-escalation vulnerability that exists in the way certain system calls are being managed. A...Show more |
1Vmware 4Cloud Foundation EsxiFusion+1 moreJun 17, 2026 Nov 20, 2020 N/A· v4 8.2 HIGH· v3 4.6 MEDIUM· v2 VMware ESXi (7.0 before ESXi70U1b-17168206, 6.7 before ESXi670-202011101-SG, 6.5 before ESXi650-202011301-SG), Workstation (15.x before 15.5.7), Fusion (11.x before 11.5.7) contain a use-after-free vulnerability in the X...Show more |
1Vmware 4Cloud Foundation EsxiFusion+1 moreJun 17, 2026 Oct 20, 2020 N/A· v4 5.3 MEDIUM· v3 3.5 LOW· v2 In VMware ESXi (6.7 before ESXi670-201908101-SG, 6.5 before ESXi650-202007101-SG), Workstation (15.x before 15.1.0), Fusion (11.x before 11.1.0), the VMCI host drivers used by VMware hypervisors contain a memory leak vul...Show more |
1Vmware 2Cloud Foundation EsxiJun 17, 2026 Oct 20, 2020 N/A· v4 9.8 CRITICAL· v3 10.0 HIGH· v2 OpenSLP as used in VMware ESXi (7.0 before ESXi_7.0.1-0.0.16850804, 6.7 before ESXi670-202010401-SG, 6.5 before ESXi650-202010401-SG) has a use-after-free issue. A malicious actor residing in the management network who h...Show more |
1Vmware 5Cloud Foundation EsxiFusion+2 moreJun 17, 2026 Oct 20, 2020 N/A· v4 7.7 HIGH· v3 4.9 MEDIUM· v2 VMware ESXi (7.0 before ESXi_7.0.1-0.0.16850804, 6.7 before ESXi670-202008101-SG, 6.5 before ESXi650-202007101-SG), Workstation (15.x), Fusion (11.x before 11.5.6) contain an out-of-bounds write vulnerability due to a ti...Show more |
1Vmware 4Cloud Foundation EsxiFusion+1 moreJun 17, 2026 Oct 20, 2020 N/A· v4 5.8 MEDIUM· v3 3.5 LOW· v2 VMware ESXi (7.0 before ESXi_7.0.1-0.0.16850804, 6.7 before ESXi670-202008101-SG, 6.5 before ESXi650-202007101-SG), Workstation (15.x), Fusion (11.x before 11.5.6) contain an out-of-bounds read vulnerability due to a tim...Show more |
1Vmware 3Cloud Foundation EsxiVcenter ServerJun 17, 2026 Aug 21, 2020 N/A· v4 5.3 MEDIUM· v3 5.0 MEDIUM· v2 VMware ESXi and vCenter Server contain a partial denial of service vulnerability in their respective authentication services. VMware has evaluated the severity of this issue to be in the Moderate severity range with a ma...Show more |
1Vmware 4Cloud Foundation EsxiFusion+1 moreJun 17, 2026 Jun 25, 2020 N/A· v4 5.5 MEDIUM· v3 2.1 LOW· v2 VMware ESXi (6.7 before ESXi670-201904101-SG and 6.5 before ESXi650-201907101-SG), Workstation (15.x before 15.0.2), and Fusion (11.x before 11.0.2) contain a heap overflow vulnerability in the vmxnet3 virtual network ad...Show more |
1Vmware 4Cloud Foundation EsxiFusion+1 moreJun 17, 2026 Jun 25, 2020 N/A· v4 3.8 LOW· v3 1.9 LOW· v2 VMware ESXi (7.0 before ESXi_7.0.0-1.20.16321839, 6.7 before ESXi670-202004101-SG and 6.5 before ESXi650-202005401-SG), Workstation (15.x before 15.5.5), and Fusion (11.x before 11.5.5) contain an out-of-bounds read vuln...Show more |
1Vmware 4Cloud Foundation EsxiFusion+1 moreJun 17, 2026 Jun 25, 2020 N/A· v4 8.2 HIGH· v3 4.6 MEDIUM· v2 VMware ESXi (7.0 before ESXi_7.0.0-1.20.16321839, 6.7 before ESXi670-202004101-SG and 6.5 before ESXi650-202005401-SG), Workstation (15.x before 15.5.5), and Fusion (11.x before 11.5.5) contain an out-of-bounds write vul...Show more |