CVE-2016-5330
VMware Host Guest Client Redirector - DLL Side Loading
Severity Score
Exploit Likelihood
Affected Versions
Public Exploits
2Exploited in Wild
-Decision
Descriptions
Untrusted search path vulnerability in the HGFS (aka Shared Folders) feature in VMware Tools 10.0.5 in VMware ESXi 5.0 through 6.0, VMware Workstation Pro 12.1.x before 12.1.1, VMware Workstation Player 12.1.x before 12.1.1, and VMware Fusion 8.1.x before 8.1.1 allows local users to gain privileges via a Trojan horse DLL in the current working directory.
Vulnerabilidad de búsqueda de ruta no confiable en la característica HGFS (también conocido como Shared Folders) en VMware Tools 10.0.5 en VMware ESXi 5.0 hasta la versión 6.0, VMware Workstation Pro 12.1.x en versiones anteriores a 12.1.1, VMware Workstation Player 12.1.x en versiones anteriores a 12.1.1 y VMware Fusion 8.1.x en versiones anteriores a 8.1.1 permite a usuarios locales obtener privilegios a través de una libreria troyanizada o fichero DLL troyanizado en el directorio de trabajo actual
CVSS Scores
SSVC
- Decision:-
Timeline
- 2016-06-07 CVE Reserved
- 2016-08-06 First Exploit
- 2016-08-08 CVE Published
- 2024-08-06 CVE Updated
- 2024-11-08 EPSS Updated
- ---------- Exploited in Wild
- ---------- KEV Due Date
CWE
- CWE-426: Untrusted Search Path
CAPEC
References (10)
URL | Tag | Source |
---|---|---|
http://www.rapid7.com/db/modules/exploit/windows/misc/vmhgfs_webdav_dll_sideload | Third Party Advisory | |
http://www.securityfocus.com/archive/1/539131/100/0/threaded | Mailing List | |
http://www.securityfocus.com/bid/92323 | Third Party Advisory | |
http://www.securitytracker.com/id/1036544 | Third Party Advisory | |
http://www.securitytracker.com/id/1036545 | Third Party Advisory | |
http://www.securitytracker.com/id/1036619 | Third Party Advisory | |
https://www.vmware.com/in/security/advisories/VMSA-2016-0010.html |
URL | Date | SRC |
---|---|---|
https://www.exploit-db.com/exploits/41711 | 2016-08-06 | |
https://securify.nl/advisory/SFY20151201/dll_side_loading_vulnerability_in_vmware_host_guest_client_redirector.html | 2024-08-06 |
URL | Date | SRC |
---|
URL | Date | SRC |
---|---|---|
http://www.vmware.com/security/advisories/VMSA-2016-0010.html | 2021-11-05 |
Affected Vendors, Products, and Versions
Vendor | Product | Version | Other | Status | ||||||
---|---|---|---|---|---|---|---|---|---|---|
Vendor | Product | Version | Other | Status | <-- --> | Vendor | Product | Version | Other | Status |
Vmware Search vendor "Vmware" | Fusion Search vendor "Vmware" for product "Fusion" | >= 8.1 < 8.1.1 Search vendor "Vmware" for product "Fusion" and version " >= 8.1 < 8.1.1" | - |
Affected
| in | Apple Search vendor "Apple" | Mac Os X Search vendor "Apple" for product "Mac Os X" | - | - |
Safe
|
Vmware Search vendor "Vmware" | Tools Search vendor "Vmware" for product "Tools" | >= 9.0.0 <= 10.3.22 Search vendor "Vmware" for product "Tools" and version " >= 9.0.0 <= 10.3.22" | - |
Affected
| in | Microsoft Search vendor "Microsoft" | Windows Search vendor "Microsoft" for product "Windows" | - | - |
Safe
|
Vmware Search vendor "Vmware" | Workstation Player Search vendor "Vmware" for product "Workstation Player" | >= 12.1.0 < 12.1.1 Search vendor "Vmware" for product "Workstation Player" and version " >= 12.1.0 < 12.1.1" | - |
Affected
| ||||||
Vmware Search vendor "Vmware" | Workstation Pro Search vendor "Vmware" for product "Workstation Pro" | >= 12.1.0 < 12.1.1 Search vendor "Vmware" for product "Workstation Pro" and version " >= 12.1.0 < 12.1.1" | - |
Affected
| ||||||
Vmware Search vendor "Vmware" | Esxi Search vendor "Vmware" for product "Esxi" | >= 5.0 <= 6.0 Search vendor "Vmware" for product "Esxi" and version " >= 5.0 <= 6.0" | - |
Affected
|