CVE-2016-5330
Untrusted search path vulnerability in the HGFS (aka Shared Folders) feature in VMware Tools 10.0.5 in VMware ESXi 5.0 through 6.0, VMware Workstation Pro 12.1.x before 12.1.1, VMware Workstation Player 12.1.x before 12.1.1, and VMware Fusion 8.1.x…
Does this matter?
EPSS puts the probability of exploitation in the next 30 days at 18.0%, higher than 97% of all known CVEs. Patch or mitigate before the next change window.
Description
Untrusted search path vulnerability in the HGFS (aka Shared Folders) feature in VMware Tools 10.0.5 in VMware ESXi 5.0 through 6.0, VMware Workstation Pro 12.1.x before 12.1.1, VMware Workstation Player 12.1.x before 12.1.1, and VMware Fusion 8.1.x before 8.1.1 allows local users to gain privileges via a Trojan horse DLL in the current working directory.
- CVSS 3.1
- 7.8 HIGHCVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
- EPSS
- 18.02% probability · 97th percentile
- CISA KEV
- Not listed
- Weakness
- CWE-426
- Affected
- vmware/workstation player · vmware/workstation pro · vmware/esxi · vmware/fusion · vmware/tools
- Source
- cve@mitre.org
References
- http://www.rapid7.com/db/modules/exploit/windows/misc/vmhgfs_webdav_dll_sideloadThird Party Advisory
- http://www.securityfocus.com/archive/1/539131/100/0/threadedThird Party Advisory, VDB Entry
- http://www.securityfocus.com/bid/92323Third Party Advisory, VDB Entry
- http://www.securitytracker.com/id/1036544Third Party Advisory, VDB Entry
- http://www.securitytracker.com/id/1036545Third Party Advisory, VDB Entry
- http://www.securitytracker.com/id/1036619Third Party Advisory, VDB Entry
- http://www.vmware.com/security/advisories/VMSA-2016-0010.htmlMitigation, Vendor Advisory
- https://securify.nl/advisory/SFY20151201/dll_side_loading_vulnerability_in_vmware_host_guest_client_redirector.htmlExploit, Third Party Advisory
- http://www.rapid7.com/db/modules/exploit/windows/misc/vmhgfs_webdav_dll_sideloadThird Party Advisory
- http://www.securityfocus.com/archive/1/539131/100/0/threadedThird Party Advisory, VDB Entry
- http://www.securityfocus.com/bid/92323Third Party Advisory, VDB Entry
- http://www.securitytracker.com/id/1036544Third Party Advisory, VDB Entry
- http://www.securitytracker.com/id/1036545Third Party Advisory, VDB Entry
- http://www.securitytracker.com/id/1036619Third Party Advisory, VDB Entry
- http://www.vmware.com/security/advisories/VMSA-2016-0010.htmlMitigation, Vendor Advisory
- https://securify.nl/advisory/SFY20151201/dll_side_loading_vulnerability_in_vmware_host_guest_client_redirector.htmlExploit, Third Party Advisory
Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.