CVE & Exploit Intelligence Database

Updated 28m ago

Search and track vulnerabilities with real-time exploit intelligence. Cross-reference CVEs against public exploits from ExploitDB, Metasploit, GitHub, and Nuclei — with CVSS and EPSS scoring, CISA KEV monitoring, and AI-powered exploit analysis.

337,123 CVEs tracked 53,223 with exploits 4,686 exploited in wild 1,539 CISA KEV 3,912 Nuclei templates 37,757 vendors 42,429 researchers
22 results Clear all
CVE-2025-41244 7.8 HIGH KEV 3 PoCs Analysis EPSS 0.00
Vmware Aria Operations < 8.18.5 - Privilege Escalation
VMware Aria Operations and VMware Tools contain a local privilege escalation vulnerability. A malicious local actor with non-administrative privileges having access to a VM with VMware Tools installed and managed by Aria Operations with SDMP enabled may exploit this vulnerability to escalate privileges to root on the same VM.
CWE-267 Sep 29, 2025
CVE-2023-34058 7.1 HIGH EPSS 0.00
VMware Tools - Privilege Escalation
VMware Tools contains a SAML token signature bypass vulnerability. A malicious actor that has been granted Guest Operation Privileges https://docs.vmware.com/en/VMware-vSphere/8.0/vsphere-security/GUID-6A952214-0E5E-4CCF-9D2A-90948FF643EC.html  in a target virtual machine may be able to elevate their privileges if that target virtual machine has been assigned a more privileged Guest Alias https://vdc-download.vmware.com/vmwb-repository/dcr-public/d1902b0e-d479-46bf-8ac9-cee0e31e8ec0/07ce8dbd-db48-4261-9b8f-c6d3ad8ba472/vim.vm.guest.AliasManager.html .
CWE-347 Oct 27, 2023
CVE-2023-34057 7.8 HIGH EPSS 0.00
VMware Tools - Privilege Escalation
VMware Tools contains a local privilege escalation vulnerability. A malicious actor with local user access to a guest virtual machine may elevate privileges within the virtual machine.
CWE-269 Oct 27, 2023
CVE-2023-20900 7.1 HIGH EPSS 0.01
VMware vSphere <8.0 - Privilege Escalation
A malicious actor that has been granted Guest Operation Privileges https://docs.vmware.com/en/VMware-vSphere/8.0/vsphere-security/GUID-6A952214-0E5E-4CCF-9D2A-90948FF643EC.html  in a target virtual machine may be able to elevate their privileges if that target virtual machine has been assigned a more privileged Guest Alias https://vdc-download.vmware.com/vmwb-repository/dcr-public/d1902b0e-d479-46bf-8ac9-cee0e31e8ec0/07ce8dbd-db48-4261-9b8f-c6d3ad8ba472/vim.vm.guest.AliasManager.html .
CWE-294 Aug 31, 2023
CVE-2023-20867 3.9 LOW KEV RANSOMWARE EPSS 0.03
Vmware Tools < 12.2.5 - Authentication Bypass
A fully compromised ESXi host can force VMware Tools to fail to authenticate host-to-guest operations, impacting the confidentiality and integrity of the guest virtual machine.
CWE-287 Jun 13, 2023
CVE-2022-31693 5.5 MEDIUM EPSS 0.00
Vmware Tools < 12.1.5 - Improper Resource Release
VMware Tools for Windows (12.x.y prior to 12.1.5, 11.x.y and 10.x.y) contains a denial-of-service vulnerability in the VM3DMP driver. A malicious actor with local user privileges in the Windows guest OS, where VMware Tools is installed, can trigger a PANIC in the VM3DMP driver leading to a denial-of-service condition in the Windows guest OS.
CWE-404 Jun 07, 2023
CVE-2022-31676 7.8 HIGH EPSS 0.00
Vmware Tools < 12.1.0 - Improper Privilege Management
VMware Tools (12.0.0, 11.x.y and 10.x.y) contains a local privilege escalation vulnerability. A malicious actor with local non-administrative access to the Guest OS can escalate privileges as a root user in the virtual machine.
CWE-269 Aug 23, 2022
CVE-2022-22977 7.1 HIGH EPSS 0.00
Vmware Tools < 10.3.24 - XXE
VMware Tools for Windows(12.0.0, 11.x.y and 10.x.y) contains an XML External Entity (XXE) vulnerability. A malicious actor with non-administrative local user privileges in the Windows guest OS, where VMware Tools is installed, may exploit this issue leading to a denial-of-service condition or unintended information disclosure.
CWE-611 May 24, 2022
CVE-2022-22943 6.7 MEDIUM EPSS 0.00
Vmware Tools < 12.0.0 - Uncontrolled Search Path
VMware Tools for Windows (11.x.y and 10.x.y prior to 12.0.0) contains an uncontrolled search path vulnerability. A malicious actor with local administrative privileges in the Windows guest OS, where VMware Tools is installed, may be able to execute code with system privileges in the Windows guest OS due to an uncontrolled search path element.
CWE-427 Mar 03, 2022
CVE-2021-21999 7.8 HIGH EPSS 0.00
Vmware App Volumes < 2.18.10 - Uncontrolled Search Path
VMware Tools for Windows (11.x.y prior to 11.2.6), VMware Remote Console for Windows (12.x prior to 12.0.1) , VMware App Volumes (2.x prior to 2.18.10 and 4 prior to 2103) contain a local privilege escalation vulnerability. An attacker with normal access to a virtual machine may exploit this issue by placing a malicious file renamed as `openssl.cnf' in an unrestricted directory which would allow code to be executed with elevated privileges.
CWE-427 Jun 23, 2021
CVE-2021-21997 5.5 MEDIUM EPSS 0.00
VMware Tools for Windows <11.3.0 - DoS
VMware Tools for Windows (11.x.y prior to 11.3.0) contains a denial-of-service vulnerability in the VM3DMP driver. A malicious actor with local user privileges in the Windows guest operating system, where VMware Tools is installed, can trigger a PANIC in the VM3DMP driver leading to a denial-of-service condition in the Windows guest operating system.
Jun 18, 2021
CVE-2020-3972 3.3 LOW EPSS 0.00
VMware Tools for macOS <11.1.1 - DoS
VMware Tools for macOS (11.x.x and prior before 11.1.1) contains a denial-of-service vulnerability in the Host-Guest File System (HGFS) implementation. Successful exploitation of this issue may allow attackers with non-admin privileges on guest macOS virtual machines to create a denial-of-service condition on their own VMs.
Jun 19, 2020
CVE-2020-3941 7.0 HIGH EPSS 0.00
VMware Tools <11 - Privilege Escalation
The repair operation of VMware Tools for Windows 10.x.y has a race condition which may allow for privilege escalation in the Virtual Machine where Tools is installed. This vulnerability is not present in VMware Tools 11.x.y since the affected functionality is not present in VMware Tools 11.
CWE-362 Jan 15, 2020
CVE-2019-5522 7.1 HIGH EPSS 0.00
Vmware Tools < 10.3.10 - Out-of-Bounds Read
VMware Tools for Windows update addresses an out of bounds read vulnerability in vm3dmp driver which is installed with vmtools in Windows guest machines. This issue is present in versions 10.2.x and 10.3.x prior to 10.3.10. A local attacker with non-administrative access to a Windows guest with VMware Tools installed may be able to leak kernel information or create a denial of service attack on the same Windows guest machine.
CWE-125 Jun 06, 2019
CVE-2018-6969 7.0 HIGH EPSS 0.00
Vmware Tools < 10.3.0 - Out-of-Bounds Read
VMware Tools (10.x and prior before 10.3.0) contains an out-of-bounds read vulnerability in HGFS. Successful exploitation of this issue may lead to information disclosure or may allow attackers to escalate their privileges on the guest VMs. In order to be able to exploit this issue, file sharing must be enabled.
CWE-125 Jul 13, 2018
CVE-2015-5191 6.7 MEDIUM EPSS 0.00
Vmware Tools < 10.0.8 - Race Condition
VMware Tools prior to 10.0.9 contains multiple file system races in libDeployPkg, related to the use of hard-coded paths under /tmp. Successful exploitation of this issue may result in a local privilege escalation. CVSS:3.0/AV:L/AC:H/PR:L/UI:R/S:U/C:H/I:H/A:H
CWE-362 Jul 28, 2017
CVE-2016-7080 7.8 HIGH EPSS 0.00
Vmware Tools < 10.0.8 - NULL Pointer Dereference
The graphic acceleration functions in VMware Tools 9.x and 10.x before 10.0.9 on OS X allow local users to gain privileges or cause a denial of service (NULL pointer dereference) via unspecified vectors, a different vulnerability than CVE-2016-7079.
CWE-476 Dec 29, 2016
CVE-2016-7079 7.8 HIGH EPSS 0.00
Vmware Tools < 10.0.8 - NULL Pointer Dereference
The graphic acceleration functions in VMware Tools 9.x and 10.x before 10.0.9 on OS X allow local users to gain privileges or cause a denial of service (NULL pointer dereference) via unspecified vectors, a different vulnerability than CVE-2016-7080.
CWE-476 Dec 29, 2016
CVE-2016-5328 5.5 MEDIUM EPSS 0.00
Vmware Tools < 10.0.8 - Information Disclosure
VMware Tools 9.x and 10.x before 10.1.0 on OS X, when System Integrity Protection (SIP) is enabled, allows local users to determine kernel memory addresses and bypass the kASLR protection mechanism via unspecified vectors.
CWE-254 Dec 29, 2016
CVE-2016-5330 7.8 HIGH 2 PoCs Analysis EPSS 0.25
Vmware Workstation Player < 12.1.1 - Untrusted Search Path
Untrusted search path vulnerability in the HGFS (aka Shared Folders) feature in VMware Tools 10.0.5 in VMware ESXi 5.0 through 6.0, VMware Workstation Pro 12.1.x before 12.1.1, VMware Workstation Player 12.1.x before 12.1.1, and VMware Fusion 8.1.x before 8.1.1 allows local users to gain privileges via a Trojan horse DLL in the current working directory.
CWE-426 Aug 08, 2016