CVE-2019-5526

Description

VMware Workstation (15.x before 15.1.0) contains a DLL hijacking issue because some DLL files are improperly loaded by the application. Successful exploitation of this issue may allow attackers with normal user privileges to escalate their privileges to administrator on a windows host where Workstation is installed.

Risk Information

Base Score
7.8
MODERATE
Vector
CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
EPSS Score
Exploitation Probability
12.886

Associated Vulnerability

VulnerabilityOS Platform
Vulnerabilities CVE-2019-5525,CVE-2019-5526 are fixed in VMware Workstation 15 (15.1.0)Windows
Vulnerabilities CVE-2019-5525,CVE-2019-5526,CVE-2020-3959 are fixed in VMware Player 15 (15.1.0)Windows

Patch Details

No records found

References

https://nvd.nist.gov/vuln/detail/CVE-2023-1234
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2023-1234