logo

Multiple vulnerabilities have been discovered in VMware ESXi, Workstation, and Fusion which could allow for local code execution.

ID: d97c546a-df6b-56c1-8c4d-d506d9669768

STIX ID: report--d97c546a-df6b-56c1-8c4d-d506d9669768

Feed Name: CISecurity.org Advisories

Threat Score
65/100

Date Published: 2025-03-05

Date Updated: 2026-04-27

...
...

Multiple vulnerabilities were identified in VMware ESXi, Workstation, and Fusion—CVE-2025-22224 (TOCTOU leading to out-of-bounds write), CVE-2025-22225 (arbitrary write), and CVE-2025-22226 (information disclosure via out-of-bounds read in HGFS)—which could allow local code execution in the context of an administrator account, enabling installation of programs, data modification or deletion, and creation of accounts with full rights.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.