Privilege escalation in VMware Tools for Windows



Published: 2022-03-02
Risk Low
Patch available YES
Number of vulnerabilities 1
CVE-ID CVE-2022-22943
CWE-ID CWE-426
Exploitation vector Network
Public exploit N/A
Vulnerable software
Subscribe
VMware Tools
Client/Desktop applications / Other client software

Vendor VMware, Inc

Security Bulletin

This security bulletin contains one low risk vulnerability.

1) Untrusted search path

EUVDB-ID: #VU60939

Risk: Low

CVSSv3.1: 5.8 [CVSS:3.1/AV:N/AC:H/PR:H/UI:N/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C]

CVE-ID: CVE-2022-22943

CWE-ID: CWE-426 - Untrusted Search Path

Exploit availability: No

Description

The vulnerability allows a local user to escalate privileges on the system.

The vulnerability exists due to insecure loading of files. A local privileged user on the guest OS can place a specially crafted library into the current working directory and execute arbitrary code with elevated (SYSTEM) privileges on the guest OS.

Mitigation

Install updates from vendor's website.

Vulnerable software versions

VMware Tools: 10.0.0 - 11.3.5

External links

http://www.vmware.com/security/advisories/VMSA-2022-0007.html


Q & A

Can this vulnerability be exploited remotely?

Yes. This vulnerability can be exploited by a remote authenticated privileged user via the Internet.

Is there known malware, which exploits this vulnerability?

No. We are not aware of malware exploiting this vulnerability.



###SIDEBAR###