CVE-2020-3961: High severity vmware horizon vulnerability
Published Jun 15, 2020
·Updated
VMware Horizon Client for Windows (prior to 5.4.3) contains a privilege escalation vulnerability due to folder permission configuration and unsafe loading of libraries. A local user on the system where the software is installed may exploit this issue to run commands as any user.
Affected Software
2 affected components
VMware Horizon Client<5.4.3
Microsoft Windows
Event History
Jun 15, 2020
CVE Published
via MITRE·03:18 PM
Data Sourced
via MITRE·03:18 PM
DescriptionWeakness
Frequently Asked Questions
1
What is the vulnerability ID?
The vulnerability ID is CVE-2020-3961.
2
What is the severity of CVE-2020-3961?
The severity of CVE-2020-3961 is high with a score of 7.8.
3
What is the affected software of CVE-2020-3961?
The affected software is VMware Horizon Client for Windows prior to version 5.4.3.
4
What is the description of CVE-2020-3961?
CVE-2020-3961 is a privilege escalation vulnerability in VMware Horizon Client for Windows due to folder permission configuration and unsafe loading of libraries.
5
How can the vulnerability be exploited?
A local user on the system where the software is installed may exploit CVE-2020-3961 to run commands as any user.