First published: Mon Jun 15 2020(Updated: )
VMware Horizon Client for Windows (prior to 5.4.3) contains a privilege escalation vulnerability due to folder permission configuration and unsafe loading of libraries. A local user on the system where the software is installed may exploit this issue to run commands as any user.
Credit: security@vmware.com
Affected Software | Affected Version | How to fix |
---|---|---|
Vmware Horizon Client | <5.4.3 | |
Microsoft Windows |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID is CVE-2020-3961.
The severity of CVE-2020-3961 is high with a score of 7.8.
The affected software is VMware Horizon Client for Windows prior to version 5.4.3.
CVE-2020-3961 is a privilege escalation vulnerability in VMware Horizon Client for Windows due to folder permission configuration and unsafe loading of libraries.
A local user on the system where the software is installed may exploit CVE-2020-3961 to run commands as any user.