CVE-2023-20867
VMware Tools Authentication Bypass Vulnerability
A fully compromised ESXi host can force VMware Tools to fail to authenticate host-to-guest operations, impacting the confidentiality and integrity of the guest virtual machine.
LOW · CVSS 3.9
⚠ CISA KEV
EPSS 0.02946
Act now
- Listed on CISA KEV (known exploited in the wild)
- SSVC exploitation status: active
Sigma rules7
YARA rules0