CVE Vulnerabilities

CVE-2016-7086

Published: Dec 29, 2016 | Modified: Apr 12, 2025
CVSS 3.x
7.8
HIGH
Source:
NVD
CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
CVSS 2.x
7.2 HIGH
AV:L/AC:L/Au:N/C:C/I:C/A:C
RedHat/V2
RedHat/V3
Ubuntu
root.io logo minimus.io logo echo.ai logo

The installer in VMware Workstation Pro 12.x before 12.5.0 and VMware Workstation Player 12.x before 12.5.0 on Windows allows local users to gain privileges via a Trojan horse setup64.exe file in the installation directory.

Affected Software

NameVendorStart VersionEnd Version
Workstation_playerVmware12.0.0 (including)12.0.0 (including)
Workstation_playerVmware12.0.1 (including)12.0.1 (including)
Workstation_playerVmware12.1.0 (including)12.1.0 (including)
Workstation_playerVmware12.1.1 (including)12.1.1 (including)
Workstation_proVmware12.0.0 (including)12.0.0 (including)
Workstation_proVmware12.0.1 (including)12.0.1 (including)
Workstation_proVmware12.1.0 (including)12.1.0 (including)
Workstation_proVmware12.1.1 (including)12.1.1 (including)

References