Logo
vulnerabilityCVE-2022-22943
Name
CVE-2022-22943
Source
NVD ( link)Debian ( link)
Description
VMware Tools for Windows (11.x.y and 10.x.y prior to 12.0.0) contains an uncontrolled search path vulnerability. A malicious actor with local administrative privileges in the Windows guest OS, where VMware Tools is installed, may be able to execute code with system privileges in the Windows guest OS due to an uncontrolled search path element.
Published Date
Updated Date
Workaround
-

Analysis#


Affected Component
Analysis
openvmtools
Exploitable

Vulnerability Ratings#


6.7
CVSSv31
7.2
CVSSv2

Others affected components#


Name
Project
Project Version
Version
Status
buildroot
master
11.3.5-18557794
Exploitable
yocto
kirkstone
11.3.5
Not Affected
yocto
master
13.0.10
Not Affected
yocto
scarthgap
12.3.5
Not Affected