Vulnerabilities > Vmware

DATE CVE VULNERABILITY TITLE RISK
2022-08-18 CVE-2022-21793 Unspecified vulnerability in VMWare I40En and Ixgben
Insufficient control flow management in the Intel(R) Ethernet 500 Series Controller drivers for VMWare before version 1.11.4.0 and in the Intel(R) Ethernet 700 Series Controller drivers for VMWare before version 2.1.5.0 may allow an authenticated user to potentially enable a denial of service via local access.
local
low complexity
vmware
5.5
2022-08-10 CVE-2022-22983 Insufficiently Protected Credentials vulnerability in VMWare Workstation
VMware Workstation (16.x prior to 16.2.4) contains an unprotected storage of credentials vulnerability.
local
low complexity
vmware CWE-522
5.9
2022-08-10 CVE-2022-31672 Unspecified vulnerability in VMWare Vrealize Operations
VMware vRealize Operations contains a privilege escalation vulnerability.
network
low complexity
vmware
7.2
2022-08-10 CVE-2022-31673 Unspecified vulnerability in VMWare Vrealize Operations
VMware vRealize Operations contains an information disclosure vulnerability.
network
low complexity
vmware
8.8
2022-08-10 CVE-2022-31674 Information Exposure Through Log Files vulnerability in VMWare Vrealize Operations
VMware vRealize Operations contains an information disclosure vulnerability.
network
low complexity
vmware CWE-532
4.3
2022-08-10 CVE-2022-31675 Unspecified vulnerability in VMWare Vrealize Operations
VMware vRealize Operations contains an authentication bypass vulnerability.
network
low complexity
vmware
7.5
2022-08-05 CVE-2022-31656 Unspecified vulnerability in VMWare products
VMware Workspace ONE Access, Identity Manager and vRealize Automation contain an authentication bypass vulnerability affecting local domain users.
network
low complexity
vmware
critical
9.8
2022-08-05 CVE-2022-31657 Open Redirect vulnerability in VMWare products
VMware Workspace ONE Access and Identity Manager contain a URL injection vulnerability.
network
low complexity
vmware CWE-601
critical
9.8
2022-08-05 CVE-2022-31658 Injection vulnerability in VMWare products
VMware Workspace ONE Access, Identity Manager and vRealize Automation contain a remote code execution vulnerability.
network
low complexity
vmware CWE-74
7.2
2022-08-05 CVE-2022-31659 SQL Injection vulnerability in VMWare products
VMware Workspace ONE Access and Identity Manager contain a remote code execution vulnerability.
network
low complexity
vmware CWE-89
7.2