Source |
The Hacker News |
Identifiant |
8658239 |
Date de publication |
2025-03-26 09:50:00 (vue: 2025-03-26 05:08:05) |
Titre |
Nouveaux défauts de sécurité trouvés dans VMware Tools et Crushftp - Risque élevé, pas de solution de contournement New Security Flaws Found in VMware Tools and CrushFTP - High Risk, No Workaround |
Texte |
Broadcom a émis des correctifs de sécurité pour aborder un défaut de sécurité à haute sévérité dans les outils VMware pour Windows qui pourraient conduire à une contournement d'authentification.
Suivi en CVE-2025-22230, la vulnérabilité est notée de 7,8 sur le système de notation de vulnérabilité commun à dix points (CVSS).
"VMware Tools for Window
Broadcom has issued security patches to address a high-severity security flaw in VMware Tools for Windows that could lead to an authentication bypass.
Tracked as CVE-2025-22230, the vulnerability is rated 7.8 on the ten-point Common Vulnerability Scoring System (CVSS).
"VMware Tools for Windows contains an authentication bypass vulnerability due to improper access control," Broadcom said in an |
Notes |
★★★
|
Envoyé |
Oui |
Condensat |
2025 22230 access address authentication broadcom bypass common contains control could crushftp cve cvss due flaw flaws found has high improper issued lead new patches point rated risk said scoring security severity system ten tools tracked vmware vulnerability windows workaround |
Tags |
Tool
Vulnerability
|
Stories |
|
Move |
|