vulnerability

VMware Workstation: Vulnerability (VMSA-2023-0003) (CVE-2023-20854)

Severity
6
CVSS
(AV:L/AC:L/Au:S/C:N/I:C/A:C)
Published
Feb 27, 2023
Added
Feb 27, 2023
Modified
Mar 30, 2026

Description

VMware Workstation contains an arbitrary file deletion vulnerability. A malicious actor with local user privileges on the victim's machine may exploit this vulnerability to delete arbitrary files from the file system of the machine on which Workstation is installed.

Solution

vmware-workstation-upgrade-17_0_1
Title
Rapid7 Labs

2026 Global Threat Landscape Report

The predictive window has collapsed. Exploitation follows disclosure in days. See how attackers are accelerating and how to stay ahead.