The flaws affect VMware Workstation, Player, ACE, Server and ESX.
According to a US-CERT advisory on Tuesday, the vulnerabilities could be exploited to execute arbitrary code, cause a denial-of-service condition, assume elevated privileges or disclose information.
Three of the bugs are related to errors in ActiveX controls, Internet Server Application Programming Interface (ISAPI) and OpenProcess.
The French Security Incident Response Team rated the vulnerabilities "moderate risk." US-CERT encourages users to update to the latest versions.
See original article on scmagazineus.com
 
                               .png&h=140&w=231&c=1&s=0) 
             
             
             
             
             
             
            .png&w=100&c=1&s=0) 
             
             iTnews Benchmark Security Awards 2025
                        iTnews Benchmark Security Awards 2025
                     Digital Leadership Day Federal
                        Digital Leadership Day Federal
                     Government Cyber Security Showcase Federal
                        Government Cyber Security Showcase Federal
                     Government Innovation Showcase Federal
                        Government Innovation Showcase Federal
                     Digital NSW 2025 Showcase
                        Digital NSW 2025 Showcase
                    



 
                         
                         
                         
                         
                 
                 
                 
                _(1).jpg&h=140&w=231&c=1&s=0) 
                 
                 
                                    
                                     
                                    
                                    