EXPOSURES › CVE-2020-3950
CVE-2020-3950
HIGH ⌖ ON CISA KEV · EXPLOITEDImproper use of setuid binaries in VMware Fusion, VMRC, and Horizon Client for Mac allowed privilege escalation to root.
Attackers could escalate privileges to root on affected VMware products by exploiting setuid binaries, enabling full system compromise. DIBs must patch these products immediately and restrict setuid usage, as this flaw was actively exploited in the wild.
Shame score — A known privilege escalation flaw in widely deployed virtualization software was actively exploited in the wild, indicating a failure to patch a critical vulnerability before it was weaponized.
▸ RECOMMENDED ACTION Actively exploited (CISA KEV) — remediate now, ahead of your normal patch cycle.
VMware Fusion, Remote Console (VMRC) for Mac, and Horizon Client for Mac contain a privilege escalation vulnerability due to improper use of setuid binaries that allows attackers to escalate privileges to root.
"VMware Fusion, Remote Console (VMRC) for Mac, and Horizon Client for Mac contain a privilege escalation vulnerability due to improper use of setuid binaries that allows attackers to escalate privileges to root."
| PRODUCT | STATUS |
|---|---|
| VMware Government Services (VGS) VMware, Inc. |
Authorized |
| Workspace ONE VMware, Inc. |
Authorized |