peter bassill · operator
$ cve CVE-2020-3950 JSON

CVE-2020-3950 KEV EXPLOIT

7.8
HIGH · CVSS 3.1 · EPSS 7.3% (pctl 94)

Patch first

On CISA KEV — known exploited in the wild, due 2022-05-03.

Description

VMware Fusion (11.x before 11.5.2), VMware Remote Console for Mac (11.x and prior before 11.0.1) and Horizon Client for Mac (5.x and prior before 5.4.0) contain a privilege escalation vulnerability due to improper use of setuid binaries. Successful exploitation of this issue may allow attackers with normal user privileges to escalate their privileges to root on the system where Fusion, VMRC or Horizon Client is installed.

Scoring

CVSS7.8 (HIGH, v3.1)
VectorCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
EPSS7.25% — more likely to be exploited than 94% of all CVEs
WeaknessCWE-269
On CISA KEVyes — remediate by 2022-05-03
Public exploityes
Published2020-03-17
Last modified2026-06-17

CISA KEV

NameVMware Multiple Products Privilege Escalation Vulnerability
Added2021-11-03
Due2022-05-03
Vendor / productVMware / Multiple Products
Ransomware usenone reported

Affected (4)

VendorProduct
applemacos
vmwarefusion
vmwarehorizon client
vmwareremote console

Public exploits

References

→ the Explorer  ·  watch your stack  ·  NVD