vulnerability

VMSA-2016-0010: DLL hijacking issue in Windows-based VMware Tools (CVE-2016-5330)

Severity
7
CVSS
(AV:L/AC:M/Au:N/C:C/I:C/A:C)
Published
Aug 7, 2016
Added
Oct 20, 2016
Modified
Oct 7, 2025

Description

Untrusted search path vulnerability in the HGFS (aka Shared Folders) feature in VMware Tools 10.0.5 in VMware ESXi 5.0 through 6.0, VMware Workstation Pro 12.1.x before 12.1.1, VMware Workstation Player 12.1.x before 12.1.1, and VMware Fusion 8.1.x before 8.1.1 allows local users to gain privileges via a Trojan horse DLL in the current working directory.

Solutions

vmware-esxi50-upgrade-3982819vmware-esxi51-upgrade-3872664vmware-esxi55-upgrade-4179631vmware-esxi60-upgrade-3620759
Title
Rapid7 Labs

2026 Global Threat Landscape Report

The predictive window has collapsed. Exploitation follows disclosure in days. See how attackers are accelerating and how to stay ahead.