← Back to browse · API

CVE-2023-20867

Severity
LOW
CVSS
3.9
EPSS
0.1353
Risk score
45.34
CISA KEV
Yes
PoC
No
Published
2023-06-13
Modified
2025-10-21
First seen
2026-08-07
Aliases
EUVD-2023-25040, GHSA-QM59-F7VH-3M2P
Products
VMware:Tools
Sources
euvd EUVD-2023-25040
cisa.gov CVE-2023-20867

Description

A fully compromised ESXi host can force VMware Tools to fail to authenticate host-to-guest operations, impacting the confidentiality and integrity of the guest virtual machine.

References