Home/CVEs/CVE-2020-3950/

CVE-2020-3950 - VMware Multiple Products Privilege Escalation Vulnerability

Project:VMware

Product:Multiple Products

Date Added:2021-11-03Due Date:2022-05-03

Vulnerability Name

VMware Multiple Products Privilege Escalation Vulnerability

Description

VMware Fusion, Remote Console (VMRC) for Mac, and Horizon Client for Mac contain a privilege escalation vulnerability due to improper use of setuid binaries that allows attackers to escalate privileges to root.

Known To Be Used in Ransomware Campaigns?

Unknown

Action

Apply updates per vendor instructions.

Additional Notes

https://nvd.nist.gov/vuln/detail/CVE-2020-3950