vmware cloud-foundation CVE-2021-22045 vulnerability in VMware Products
Published on January 4, 2022

VMware ESXi (7.0, 6.7 before ESXi670-202111101-SG and 6.5 before ESXi650-202110101-SG), VMware Workstation (16.2.0) and VMware Fusion (12.2.0) contains a heap-overflow vulnerability in CD-ROM device emulation. A malicious actor with access to a virtual machine with CD-ROM device emulation may be able to exploit this vulnerability in conjunction with other issues to execute code on the hypervisor from a virtual machine.

NVD


Products Associated with CVE-2021-22045

You can be notified by email with stack.watch whenever vulnerabilities like CVE-2021-22045 are published in these products:

 
 
 
 

Exploit Probability

EPSS
2.14%
Percentile
83.88%

EPSS (Exploit Prediction Scoring System) scores estimate the probability that a vulnerability will be exploited in the wild within the next 30 days. The percentile shows you how this score compares to all other vulnerabilities.