Skip to main content

Vendor/product archive

vmware / photon_os CVEs

Beta · best-effort

6 CVEs tagged to vmware / photon_os2 Critical, 3 High, 1 Medium, 0 Low, 0 Unrated.

CVE-2022-22942

Published Dec 13, 2023

The vmwgfx driver contains a local privilege escalation vulnerability that allows unprivileged users to gain access to files opened by other processes on the system through a dang…

CVSS 7.8 · High
Vendor/product tagsBeta · best-effort

CVE-2023-34060

Published Nov 14, 2023

VMware Cloud Director Appliance contains an authentication bypass vulnerability in case VMware Cloud Director Appliance was upgraded to 10.5 from an older version. On an upgraded…

CVSS 9.8 · Critical
evidence mentions
2
Buzz score
17.5
Vendor/product tagsBeta · best-effort

CVE-2021-22055

Published Apr 11, 2022

The SchedulerServer in Vmware photon allows remote attackers to inject logs through \r in the package parameter. Attackers can also insert malicious data and fake entries.

CVSS 5.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2016-5333

Published Aug 31, 2016

VMware Photos OS OVA 1.0 before 2016-08-14 has a default SSH public key in an authorized_keys file, which allows remote attackers to obtain SSH access by leveraging knowledge of t…

CVSS 9.8 · Critical
Vendor/product tagsBeta · best-effort
Showing 1-6 of 6 CVEsPage 1 of 1