High severity7.1NVD Advisory· Published May 24, 2022· Updated Jun 17, 2026
CVE-2022-22977
CVE-2022-22977
Description
VMware Tools for Windows(12.0.0, 11.x.y and 10.x.y) contains an XML External Entity (XXE) vulnerability. A malicious actor with non-administrative local user privileges in the Windows guest OS, where VMware Tools is installed, may exploit this issue leading to a denial-of-service condition or unintended information disclosure.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
3(expand)+ 1 more
- (no CPE)
- (no CPE)range: 12.0.0, 11.x.y and 10.x.y
Patches
Vulnerability mechanics
References
1- www.vmware.com/security/advisories/VMSA-2022-0015.htmlnvdVendor Advisory
News mentions
0No linked articles in our index yet.