Browse all 219 CVE security advisories affecting VMWare. AI-powered Chinese analysis, POCs, and references for each vulnerability.
VMware operates as a leading provider of cloud computing and virtualization platforms, enabling enterprises to manage data centers and deploy software-defined infrastructure. With 219 recorded CVEs, its attack surface reflects the complexity of managing hypervisors and management interfaces. Historically, vulnerabilities have frequently involved remote code execution, cross-site scripting, and privilege escalation, often stemming from improper input validation or authentication bypasses in web-based management consoles. Notable incidents include critical flaws in vCenter Server and ESXi that allowed attackers to gain unauthorized administrative access or execute arbitrary commands on host systems. These exploits underscore the risks associated with centralized management tools, where a single compromise can impact entire virtualized environments. The high volume of vulnerabilities highlights the necessity for rigorous patch management and secure configuration practices to mitigate potential breaches in enterprise infrastructure.
| CVE ID | Title | CVSS | Severity | Published |
|---|---|---|---|---|
| CVE-2017-4904 | 多款VMware产品XHCI controller 缓冲区错误漏洞 — ESXi | 8.4 | - | 2017-06-07 |
| CVE-2017-4905 | 多款VMware产品信息泄露漏洞 — ESXi | 5.5 | - | 2017-06-07 |
| CVE-2017-4914 | VMware vSphere Data Protection 安全漏洞 — vSphere Data Protection (VDP) | 9.8 | - | 2017-06-07 |
| CVE-2017-4917 | VMware vSphere Data Protection 信息泄露漏洞 — vSphere Data Protection (VDP) | 9.1 | - | 2017-06-07 |
| CVE-2017-4897 | VMware Horizon DaaS 安全漏洞 — Horizon DaaS | 5.5 | - | 2017-05-31 |
| CVE-2017-4915 | VMware Workstation Pro for Linux和VMware Workstation Player for Linux 安全漏洞 — Workstation Pro/Player | 7.8 | - | 2017-05-22 |
| CVE-2017-4916 | VMware Workstation Pro for Windows和VMware Workstation Player for Windows vstor2驱动程序安全漏洞 — Workstation Pro/Player | 7.7 | - | 2017-05-22 |
| CVE-2017-4895 | VMWare Airwatch Agent for Android 安全漏洞 — Airwatch Agent | 8.8 | - | 2017-05-10 |
| CVE-2017-4896 | VMWare Airwatch Inbox for Android 安全漏洞 — Airwatch Console | 6.5 | - | 2017-05-10 |
This page lists every published CVE security advisory associated with VMWare. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.