CVE-2019-5511 is a path handling vulnerability affecting VMware Workstation versions 15.x prior to 15.0.3 and 14.x prior to 14.1.6 when running on Windows hosts. This flaw allows a non-administrator to hijack the path to the VMX executable, potentially leading to elevation of privilege. With a CVSS score of 8.8 (HIGH), it represents a significant local threat where an attacker with low privileges can achieve high confidentiality, integrity, and availability impacts with low attack complexity. There is no evidence of active exploitation, and no public exploit code or significant community discussion has been observed for this vulnerability.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
>= 14.0.0, < 14.1.6CPE matchmatch criteria | cpe:2.3:a:vmware:workstation:*:*:*:*:*:*:*:* | ||
>= 15.0.0, < 15.0.3CPE matchmatch criteria | cpe:2.3:a:vmware:workstation:*:*:*:*:*:*:*:* |
CVSS version used by this source: 3.0
CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:H
The average CVE in this peer group has 0.0 Twitter, 0.1 Reddit, 0.2 Bluesky, 0.1 Mastodon, and 0.2 GitHub mentions.
No media coverage found for this CVE.
The average CVE in this peer group has 0.3 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.