QID 377966
Date Published: 2023-02-17
QID 377966: VMware Workstation Arbitrary File Deletion Vulnerability (VMSA-2023-0003)
VMware Workstation 17.x contain a arbitrary file deletion vulnerability (CVE-2023-20854).
Affected Versions:
VMware Workstation 17.x
QID Detection Logic (Authenticated):
This QID checks for vulnerable versions of VMware Workstation.
A malicious actor with local user privileges on the victim's machine may exploit this vulnerability to delete arbitrary files from the file system of the machine on which Workstation is installed.
Solution
Vendor has released patch addressing the vulnerability, for more information please refer to VMSA-2023-0003
Vendor References
- VMSA-2023-0003 -
www.vmware.com/security/advisories/VMSA-2023-0003.html
CVEs related to QID 377966
Software Advisories
| Advisory ID | Software | Component | Link |
|---|---|---|---|
| VMSA-2023-0003 |
|