CVE-2020-3941

HIGH

VMware Tools <11 - Privilege Escalation

Title source: llm
STIX 2.1

Description

The repair operation of VMware Tools for Windows 10.x.y has a race condition which may allow for privilege escalation in the Virtual Machine where Tools is installed. This vulnerability is not present in VMware Tools 11.x.y since the affected functionality is not present in VMware Tools 11.

References (1)

Core 1
Core References

Scores

CVSS v3 7.0
EPSS 0.0010
EPSS Percentile 27.3%
Attack Vector LOCAL
CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H

Details

CWE
CWE-362
Status published
Products (1)
vmware/tools 10.0.0 - 11.0.0
Published Jan 15, 2020
Tracked Since Feb 18, 2026