Metrics
Affected Vendors & Products
| Source | ID | Title |
|---|---|---|
Debian DLA |
DLA-4165-1 | open-vm-tools security update |
Debian DSA |
DSA-5919-1 | open-vm-tools security update |
EUVD |
EUVD-2025-14280 | VMware Tools contains an insecure file handling vulnerability. A malicious actor with non-administrative privileges on a guest VM may tamper the local files to trigger insecure file operations within that VM. |
Ubuntu USN |
USN-7508-1 | Open VM Tools vulnerability |
Ubuntu USN |
USN-7508-2 | Open VM Tools vulnerability |
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
Tue, 04 Nov 2025 22:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| References |
|
Wed, 14 May 2025 17:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| References |
|
Tue, 13 May 2025 04:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Weaknesses | CWE-266 | |
| References |
| |
| Metrics |
threat_severity
|
threat_severity
|
Mon, 12 May 2025 19:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| References |
|
Mon, 12 May 2025 13:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Mon, 12 May 2025 11:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | VMware Tools contains an insecure file handling vulnerability. A malicious actor with non-administrative privileges on a guest VM may tamper the local files to trigger insecure file operations within that VM. | |
| Title | Insecure file handling vulnerability | |
| Weaknesses | CWE-59 | |
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: vmware
Published:
Updated: 2025-11-04T22:06:31.917Z
Reserved: 2025-01-02T04:30:19.929Z
Link: CVE-2025-22247
Updated: 2025-11-04T22:06:31.917Z
Status : Awaiting Analysis
Published: 2025-05-12T11:15:49.850
Modified: 2025-11-04T22:16:06.797
Link: CVE-2025-22247
OpenCVE Enrichment
No data.
Debian DLA
Debian DSA
EUVD
Ubuntu USN