CVE List

Id CVE No. Status Description Phase Votes Comments Actions
94281  CVE-2016-7461  Candidate  The drag-and-drop (aka DnD) function in VMware Workstation Pro 12.x before 12.5.2 and VMware Workstation Player 12.x before 12.5.2 and VMware Fusion and Fusion Pro 8.x before 8.5.2 allows guest OS users to execute arbitrary code on the host OS or cause a denial of service (out-of-bounds memory access on the host OS) via unspecified vectors.  Assigned (20160909)  None (candidate not yet proposed)    View
94282  CVE-2016-7462  Candidate  The Suite REST API in VMware vRealize Operations (aka vROps) 6.x before 6.4.0 allows remote authenticated users to write arbitrary content to files or rename files via a crafted DiskFileItem in a relay-request payload that is mishandled during deserialization.  Assigned (20160909)  None (candidate not yet proposed)    View
94283  CVE-2016-7463  Candidate  Cross-site scripting (XSS) vulnerability in the Host Client in VMware vSphere Hypervisor (aka ESXi) 5.5 and 6.0 allows remote authenticated users to inject arbitrary web script or HTML via a crafted VM.  Assigned (20160909)  None (candidate not yet proposed)    View
94284  CVE-2016-7464  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20160909)  None (candidate not yet proposed)    View
94285  CVE-2016-7465  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20160909)  None (candidate not yet proposed)    View

Page 18857 of 20943, showing 5 records out of 104715 total, starting on record 94281, ending on 94285

Actions