DLL hijacking vulnerability in VMware Workstation and VMware Player - CVE-2019-5526ID: oval:org.secpod.oval:def:54966 | Date: (C)2019-05-22 (M)2021-09-11 |
Class: VULNERABILITY | Family: windows |
The host is installed with VMware Workstation 15.x before 15.1.0 or VMware Player 15.x before 15.1.0 and is prone to a dll hijacking vulnerability. The application fails to handle an issue in the DLL files. Successful exploitation of this issue may allow attackers with normal user privileges to escalate their privileges to administrator on a windows host where Workstation is installed.
Platform: |
Microsoft Windows Server 2022 |
Microsoft Windows 11 |
Microsoft Windows 10 |
Microsoft Windows 7 |
Microsoft Windows 8 |
Microsoft Windows 8.1 |
Microsoft Windows Server 2003 |
Microsoft Windows Server 2008 |
Microsoft Windows Server 2008 R2 |
Microsoft Windows Server 2012 |
Microsoft Windows Server 2012 R2 |
Microsoft Windows Server 2016 |
Microsoft Windows Server 2019 |
Microsoft Windows Vista |
Microsoft Windows XP |
Product: |
VMware Player |
VMware Workstation |