Vulnerabilities > Vmware

DATE CVE VULNERABILITY TITLE RISK
2018-09-11 CVE-2018-6976 Missing Encryption of Sensitive Data vulnerability in VMWare Workspace ONE
The VMware Content Locker for iOS prior to 4.14 contains a data protection vulnerability in the SQLite database.
network
low complexity
vmware CWE-311
5.3
2018-09-11 CVE-2018-6975 Missing Encryption of Sensitive Data vulnerability in VMWare Intelligent HUB
The AirWatch Agent for iOS prior to 5.8.1 contains a data protection vulnerability whereby the files and keychain entries in the Agent are not encrypted.
local
low complexity
vmware CWE-311
5.5
2018-08-15 CVE-2018-6973 Out-of-bounds Write vulnerability in VMWare Fusion and Workstation
VMware Workstation (14.x before 14.1.3) and Fusion (10.x before 10.1.3) contain an out-of-bounds write vulnerability in the e1000 device.
local
low complexity
vmware CWE-787
8.8
2018-08-13 CVE-2018-6970 Out-of-bounds Read vulnerability in VMWare Horizon Client and Horizon View
VMware Horizon 6 (6.x.x before 6.2.7), Horizon 7 (7.x.x before 7.5.1), and Horizon Client (4.x.x and prior before 4.8.1) contain an out-of-bounds read vulnerability in the Message Framework library.
network
low complexity
vmware CWE-125
6.5
2018-07-25 CVE-2018-6972 NULL Pointer Dereference vulnerability in VMWare Esxi, Fusion and Workstation
VMware ESXi (6.7 before ESXi670-201806401-BG, 6.5 before ESXi650-201806401-BG, 6.0 before ESXi600-201806401-BG and 5.5 before ESXi550-201806401-BG), Workstation (14.x before 14.1.2), and Fusion (10.x before 10.1.2) contain a denial-of-service vulnerability due to NULL pointer dereference issue in RPC handler.
network
low complexity
vmware CWE-476
6.5
2018-07-25 CVE-2018-6971 Information Exposure Through Log Files vulnerability in VMWare Horizon View Agents
VMware Horizon View Agents (7.x.x before 7.5.1) contain a local information disclosure vulnerability due to insecure logging of credentials in the vmmsi.log file when an account other than the currently logged on user is specified during installation (including silent installations).
local
low complexity
vmware CWE-532
7.8
2018-07-13 CVE-2018-6969 Out-of-bounds Read vulnerability in VMWare Tools
VMware Tools (10.x and prior before 10.3.0) contains an out-of-bounds read vulnerability in HGFS.
local
high complexity
vmware CWE-125
7.0
2018-07-09 CVE-2018-6967 Out-of-bounds Read vulnerability in VMWare Esxi, Fusion and Workstation
VMware ESXi (6.7 before ESXi670-201806401-BG), Workstation (14.x before 14.1.2), and Fusion (10.x before 10.1.2) contain an out-of-bounds read vulnerability in the shader translator.
network
low complexity
vmware CWE-125
8.1
2018-07-09 CVE-2018-6966 Out-of-bounds Read vulnerability in VMWare Esxi, Fusion and Workstation
VMware ESXi (6.7 before ESXi670-201806401-BG), Workstation (14.x before 14.1.2), and Fusion (10.x before 10.1.2) contain an out-of-bounds read vulnerability in the shader translator.
network
low complexity
vmware CWE-125
8.1
2018-07-09 CVE-2018-6965 Out-of-bounds Read vulnerability in VMWare Esxi, Fusion and Workstation
VMware ESXi (6.7 before ESXi670-201806401-BG), Workstation (14.x before 14.1.2), and Fusion (10.x before 10.1.2) contain an out-of-bounds read vulnerability in the shader translator.
network
low complexity
vmware CWE-125
8.1