CVE-2023-20854

VMware Workstation contains an arbitrary file deletion vulnerability. A malicious actor with local user privileges on the victim's machine may exploit this vulnerability to delete arbitrary files from the file system of the machine on which Workstation is installed.
References
Link Resource
https://www.vmware.com/security/advisories/VMSA-2023-0003.html Patch Release Notes Vendor Advisory
https://www.vmware.com/security/advisories/VMSA-2023-0003.html Patch Release Notes Vendor Advisory
Configurations

Configuration 1 (hide)

AND
cpe:2.3:a:vmware:workstation:17.0:*:*:*:*:*:*:*
cpe:2.3:o:microsoft:windows:-:*:*:*:*:*:*:*

History

21 Nov 2024, 07:41

Type Values Removed Values Added
References () https://www.vmware.com/security/advisories/VMSA-2023-0003.html - Patch, Release Notes, Vendor Advisory () https://www.vmware.com/security/advisories/VMSA-2023-0003.html - Patch, Release Notes, Vendor Advisory

Information

Published : 2023-02-03 19:15

Updated : 2024-11-21 07:41


NVD link : CVE-2023-20854

Mitre link : CVE-2023-20854

CVE.ORG link : CVE-2023-20854


JSON object : View

Products Affected

microsoft

  • windows

vmware

  • workstation
CWE
CWE-269

Improper Privilege Management