CVE-2016-5330 describes an untrusted search path vulnerability in the HGFS (Shared Folders) feature of VMware Tools, affecting various VMware products including ESXi, Workstation, and Fusion. This flaw allows a local attacker to gain privileges by tricking the system into loading a malicious DLL from the current working directory. With a CVSS score of 7.8 (High), the vulnerability is easily exploitable with low attack complexity, requiring user interaction, and can lead to high impact on confidentiality, integrity, and availability. While not on the CISA KEV catalog, exploit code, including a Metasploit module, is publicly available, and it has garnered community discussion and media coverage, indicating its relevance to attackers.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
>= 12.1.0, < 12.1.1CPE matchmatch criteria | cpe:2.3:a:vmware:workstation_player:*:*:*:*:*:*:*:* | ||
>= 12.1.0, < 12.1.1CPE matchmatch criteria | cpe:2.3:a:vmware:workstation_pro:*:*:*:*:*:*:*:* | ||
>= 5.0, <= 6.0CPE matchmatch criteria | cpe:2.3:o:vmware:esxi:*:*:*:*:*:*:*:* | ||
>= 8.1, < 8.1.1CPE matchmatch criteria | cpe:2.3:a:vmware:fusion:*:*:*:*:*:*:*:* | ||
>= 9.0.0, <= 10.3.22CPE matchmatch criteria | cpe:2.3:a:vmware:tools:*:*:*:*:*:*:*:* |
CVSS version used by this source: 3.1
CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
The average CVE in this peer group has 0.0 Twitter, 0.1 Reddit, 0.1 Bluesky, 0.0 Mastodon, and 0.2 GitHub mentions.
The average CVE in this peer group has 0.3 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.