cve,link,title,description,vendor,products,score,severity,epss,cisa,cisa_published,article,ransomware,exploited,exploited_date,poc,trended,trended_no_1,trended_no_1_date,published,trended_score CVE-2021-21989,https://securityvulnerability.io/vulnerability/CVE-2021-21989,Out-of-Bounds Read Vulnerability in VMware Workstation and Horizon Client,"VMware Workstation and Horizon Client for Windows have a security flaw due to an out-of-bounds read in the Cortado ThinPrint component. An attacker with access to a virtual machine or remote desktop could exploit this vulnerability, potentially leading to the disclosure of sensitive information from the TPView process on the affected system. Users of these products are advised to update to the latest versions to mitigate the risks associated with this vulnerability.",Vmware,"Vmware Workstation Pro / Player (workstation), Vmware Horizon Client For Windows",6.5,MEDIUM,0.00044999999227002263,false,,false,false,false,,,false,false,,2021-05-24T11:43:34.000Z,0 CVE-2021-21988,https://securityvulnerability.io/vulnerability/CVE-2021-21988,Out-of-Bounds Read Vulnerability in VMware Workstation and Horizon Client,"VMware Workstation and Horizon Client for Windows are impacted by an out-of-bounds read vulnerability found in the Cortado ThinPrint component, specifically in the JPEG2000 Parser. When exploited by a malicious user who has access to a virtual machine or remote desktop session, this vulnerability can lead to unauthorized information disclosure from the TPView process. This issue exists in versions of VMware Workstation prior to 16.1.2 and Horizon Client for Windows prior to 5.5.2, highlighting the importance of keeping software updated to safeguard against potential exploitation.",Vmware,"Vmware Workstation Pro / Player (workstation), Vmware Horizon Client For Windows",6.5,MEDIUM,0.00044999999227002263,false,,false,false,false,,,false,false,,2021-05-24T11:35:00.000Z,0 CVE-2021-21987,https://securityvulnerability.io/vulnerability/CVE-2021-21987,Out-of-Bounds Read Vulnerability in VMware Workstation and Horizon Client,"VMware Workstation and Horizon Client for Windows have a vulnerability in the Cortado ThinPrint component that allows for out-of-bounds reads. This flaw can potentially be exploited by malicious actors who have access to a virtual machine or remote desktop, leading to unauthorized information disclosure from the TPView process. It is crucial for users to apply the recommended updates to safeguard their systems from potential exploitation.",Vmware,"Vmware Workstation Pro / Player (workstation), Vmware Horizon Client For Windows",6.5,MEDIUM,0.00044999999227002263,false,,false,false,false,,,false,false,,2021-05-24T11:34:55.000Z,0 CVE-2020-3990,https://securityvulnerability.io/vulnerability/CVE-2020-3990,Information Disclosure Vulnerability in VMware Workstation and Horizon Client,"VMware Workstation (15.x) and Horizon Client for Windows (5.x prior to 5.4.4) contain a vulnerability stemming from an integer overflow issue in the Cortado ThinPrint component. A malicious actor with access to a virtual machine can exploit this vulnerability to disclose sensitive memory information from the TPView process running on the host system. Notably, exploitation is only possible if the virtual printing feature is enabled; while this is not enabled by default on Workstation, it is enabled by default on Horizon Client.",Vmware,Vmware Workstation And Horizon Client For Windows,6.5,MEDIUM,0.00044999999227002263,false,,false,false,false,,,false,false,,2020-09-16T16:17:17.000Z,0 CVE-2020-3989,https://securityvulnerability.io/vulnerability/CVE-2020-3989,Denial of Service Vulnerability in VMware Workstation and Horizon Client,"VMware Workstation and Horizon Client for Windows contain a vulnerability in the Cortado ThinPrint component that may allow an attacker with normal access to a virtual machine to exploit an out-of-bounds write issue. If successful, this could lead to a partial denial-of-service condition on the host system where these applications are installed. It is important to note that exploitation is only feasible if the virtual printing feature is enabled, which is not enabled by default in Workstation but is enabled by default in Horizon Client.",Vmware,Vmware Workstation And Horizon Client For Windows,3.3,LOW,0.00044999999227002263,false,,false,false,false,,,false,false,,2020-09-16T16:17:11.000Z,0 CVE-2020-3988,https://securityvulnerability.io/vulnerability/CVE-2020-3988,Out-of-bounds Read Vulnerability in VMware Workstation and Horizon Client,"VMware Workstation 15.x and Horizon Client for Windows (versions prior to 5.4.4) are susceptible to an out-of-bounds read vulnerability within the Cortado ThinPrint component, specifically in the JPEG2000 parser. This vulnerability could allow a malicious user with normal access to a virtual machine to induce a partial denial-of-service condition or potentially leak sensitive memory data from the TPView process on the host system that operates VMware Workstation or Horizon Client.",Vmware,Vmware Workstation And Horizon Client For Windows,6.1,MEDIUM,0.00044999999227002263,false,,false,false,false,,,false,false,,2020-09-16T16:14:08.000Z,0 CVE-2020-3987,https://securityvulnerability.io/vulnerability/CVE-2020-3987,Out-of-bounds Read Vulnerability in VMware Workstation and Horizon Client,"VMware Workstation (15.x) and Horizon Client for Windows (5.x prior to 5.4.4) are impacted by an out-of-bounds read vulnerability within the Cortado ThinPrint component. This flaw allows a malicious actor with normal access to a virtual machine to potentially exploit the vulnerability, leading to a partial denial-of-service condition or the unauthorized disclosure of memory from the TPView process on systems where Workstation or Horizon Client is installed. It is crucial for users to implement mitigations to safeguard against potential exploitation.",Vmware,Vmware Workstation And Horizon Client For Windows,6.1,MEDIUM,0.00044999999227002263,false,,false,false,false,,,false,false,,2020-09-16T16:14:01.000Z,0 CVE-2020-3986,https://securityvulnerability.io/vulnerability/CVE-2020-3986,Out-of-Bounds Read Vulnerability in VMware Workstation and Horizon Client,"VMware Workstation and Horizon Client for Windows have an out-of-bounds read vulnerability in the Cortado ThinPrint component's EMF Parser. A potential attacker with normal access to a virtual machine may exploit this issue, leading to a partial denial-of-service condition or unauthorized memory leakage from the TPView process on affected systems.",Vmware,Vmware Workstation And Horizon Client For Windows,6.1,MEDIUM,0.00044999999227002263,false,,false,false,false,,,false,false,,2020-09-16T16:13:54.000Z,0 CVE-2020-3951,https://securityvulnerability.io/vulnerability/CVE-2020-3951,Denial-of-Service Vulnerability in VMware Workstation and Horizon Client,"VMware Workstation and Horizon Client for Windows are susceptible to a denial-of-service attack due to a heap overflow vulnerability in Cortado Thinprint. This issue allows attackers with non-administrative access to a guest VM with virtual printing enabled to exploit the weakness, potentially leading to a denial-of-service condition affecting the Thinprint service on the host system. Users of the affected versions should apply the latest updates to mitigate this risk.",Vmware,Vmware Workstation And Horizon Client For Windows,3.8,LOW,0.0004400000034365803,false,,false,false,false,,,false,false,,2020-03-17T18:41:49.000Z,0 CVE-2019-5543,https://securityvulnerability.io/vulnerability/CVE-2019-5543,Writeable Configuration Directory in VMware Horizon Client and VMware Workstation,"In certain versions of VMware Horizon Client, VMware Remote Console, and VMware Workstation for Windows, a vulnerability exists where the folder containing configuration files for the VMware USB arbitration service is set to writable by all users. This misconfiguration allows a local user to modify configurations and potentially execute commands as any user on the system where the software is installed, posing a risk of unauthorized access and system integrity compromise.",Vmware,"Vmware Horizon Client For Windows,Vmware Remote Console For Windows,Vmware Workstation For Windows",7.8,HIGH,0.0004199999966658652,false,,false,false,false,,,false,false,,2020-03-16T17:24:55.000Z,0