← Back

Workstation

workstation

Vendor: Vmware • 213 CVEs

CVEs (213)

CVE
VENDORS
PRODUCTS
UPDATED
PUBLISHED
CVSS
1Vmware
1Workstation
Apr 23, 2026
Feb 7, 2007
N/A· v4
N/A· v3
1.2 LOW· v2
VMware Workstation 5.5.3 34685 does not immediately change the availability of a shared clipboard when the "Enable copy and paste to and from this virtual machine" checkbox is changed, which allows local users to obtain...Show more
VMware Workstation 5.5.3 34685 does not immediately change the availability of a shared clipboard when the "Enable copy and paste to and from this virtual machine" checkbox is changed, which allows local users to obtain sensitive information or conduct certain attacks that are facilitated by weaker isolation between the host and guest operating systems.Show less
1Vmware
1Workstation
Apr 23, 2026
Dec 10, 2006
N/A· v4
N/A· v3
4.6 MEDIUM· v2
Buffer overflow in an ActiveX control in VMWare 5.5.1 allows local users to execute arbitrary code via a long VmdbDb parameter to the Initialize function.
1Vmware
5Esx
InfrastructurePlayer+2 more
Apr 16, 2026
Jul 21, 2006
N/A· v4
N/A· v3
3.6 LOW· v2
vmware-config.pl in VMware for Linux, ESX Server 2.x, and Infrastructure 3 does not check the return code from a Perl chmod function call, which might cause an SSL key file to be created with an unsafe umask that allows...Show more
vmware-config.pl in VMware for Linux, ESX Server 2.x, and Infrastructure 3 does not check the return code from a Perl chmod function call, which might cause an SSL key file to be created with an unsafe umask that allows local users to read or modify the SSL key.Show less
1Vmware
4Ace
Gsx ServerPlayer+1 more
Jul 7, 2026
Dec 21, 2005
N/A· v4
N/A· v3
10.0 HIGH· v2
Heap-based buffer overflow in the NAT networking components vmnat.exe and vmnet-natd in VMWare Workstation 5.5, GSX Server 3.2, ACE 1.0.1, and Player 1.0 allows remote authenticated attackers, including guests, to execut...Show more
Heap-based buffer overflow in the NAT networking components vmnat.exe and vmnet-natd in VMWare Workstation 5.5, GSX Server 3.2, ACE 1.0.1, and Player 1.0 allows remote authenticated attackers, including guests, to execute arbitrary code via crafted (1) EPRT and (2) PORT FTP commands.Show less
1Vmware
1Workstation
Apr 16, 2026
Nov 18, 2005
N/A· v4
N/A· v3
7.2 HIGH· v2
Unquoted Windows search path vulnerability in VMWare Workstation 5.0.0 build-13124 might allow local users to gain privileges via a malicious "program.exe" file in the C: folder.
1Vmware
1Workstation
Apr 16, 2026
Feb 14, 2005
N/A· v4
N/A· v3
4.6 MEDIUM· v2
VMware before 4.5.2.8848-r5 searches for gdk-pixbuf shared libraries using a path that includes the rrdharan world-writable temporary directory, which allows local users to execute arbitrary code.
1Vmware
1Workstation
Apr 16, 2026
Dec 31, 2004
N/A· v4
N/A· v3
7.2 HIGH· v2
Format string vulnerability in VMware Workstation 4.5.2 build-8848, if running with elevated privileges, might allow local users to execute arbitrary code via format string specifiers in command line arguments. NOTE: it...Show more
Format string vulnerability in VMware Workstation 4.5.2 build-8848, if running with elevated privileges, might allow local users to execute arbitrary code via format string specifiers in command line arguments. NOTE: it is not clear if there are any default or typical circumstances under which VMware would be running with privileges beyond those already available to the attackers, so this might not be a vulnerability.Show less
1Vmware
1Workstation
Apr 16, 2026
Oct 20, 2003
N/A· v4
N/A· v3
4.6 MEDIUM· v2
VMware Workstation 4.0.1 for Linux, build 5289 and earlier, allows local users to delete arbitrary files via a symlink attack.
1Vmware
2Gsx Server
Workstation
Apr 16, 2026
Aug 27, 2003
N/A· v4
N/A· v3
7.2 HIGH· v2
VMware GSX Server 2.5.1 build 4968 and earlier, and Workstation 4.0 and earlier, allows local users to gain root privileges via certain enivronment variables that are used when launching a virtual machine session.
1Vmware
1Workstation
Apr 16, 2026
Aug 7, 2003
N/A· v4
N/A· v3
3.7 LOW· v2
VMware Workstation 4.0 for Linux allows local users to overwrite arbitrary files and gain privileges via "symlink manipulation."
1Vmware
1Workstation
Apr 16, 2026
Jul 30, 2001
N/A· v4
N/A· v3
3.6 LOW· v2
VMWare creates a temporary file vmware-log.USERNAME with insecure permissions, which allows local users to read or modify license information.
1Vmware
1Workstation
Apr 16, 2026
Jan 17, 2000
N/A· v4
N/A· v3
3.6 LOW· v2
VMWare 1.1.2 allows local users to cause a denial of service via a symlink attack.
1Vmware
1Workstation
Apr 16, 2026
Jun 26, 1999
N/A· v4
N/A· v3
7.2 HIGH· v2
Buffer overflow in VMWare 1.0.1 for Linux via a long HOME environmental variable.