CVE-2019-5526
Last modified
CVE-2019-5526 is a vulnerability of currently unknown severity. VMware Workstation (15.x before 15.1.0) contains a DLL hijacking issue because some DLL files are improperly loaded by the application. Successful exploitation of this issue may allow attackers with normal user privileges to escalate their privileges to administrator on a windows host where Workstation is installed.. EPSS estimates a 9.03% chance of exploitation in the next 30 days.
Description
VMware Workstation (15.x before 15.1.0) contains a DLL hijacking issue because some DLL files are improperly loaded by the application. Successful exploitation of this issue may allow attackers with normal user privileges to escalate their privileges to administrator on a windows host where Workstation is installed.
Metrics
Weakness Enumeration
Affected Software
| Vendor | Product | Versions |
|---|---|---|
| Vmware | Workstation | >= 15.0.0, < 15.1.0 |
References
- http://www.securityfocus.com/bid/108333Third Party Advisory, VDB Entry
- http://www.securityfocus.com/bid/108333Third Party Advisory, VDB Entry
Timeline
- Published
- Last Modified
- Status
- Modified
Frequently Asked Questions
What is CVE-2019-5526?
How severe is CVE-2019-5526?
How do I fix CVE-2019-5526?
How Strix Helps
- How Strix found a critical auth bypass in etcdStrix autonomously discovered a critical authentication bypass in etcd, later designated CVE-2026-33413.
- Autonomous PentestingAI agents that find and validate exploitable vulnerabilities like this one across your applications.
- PR ReviewsPentest every pull request so vulnerable code is caught before it ships to production.
- AI Penetration TestingHow AI-driven penetration testing continuously covers your attack surface.
Related CVEs from 2019
- CVE-2019-5520VMware ESXi (6.7 before ESXi670-201904101-SG and 6.5 before …
- CVE-2019-5521VMware ESXi (6.7 before ESXi670-201904101-SG and 6.5 before …9.6
- CVE-2019-5522VMware Tools for Windows update addresses an out of bounds r…
- CVE-2019-5523VMware vCloud Director for Service Providers 9.5.x prior to …
- CVE-2019-5524VMware Workstation (14.x before 14.1.6) and Fusion (10.x bef…
- CVE-2019-5525VMware Workstation (15.x before 15.1.0) contains a use-after…
- CVE-2019-5527ESXi, Workstation, Fusion, VMRC and Horizon Client contain a…8.8
- CVE-2019-5528VMware ESXi 6.5 suffers from partial denial of service vulne…5.3
- CVE-2019-5530Windows binaries generated with InstallBuilder versions earl…
- CVE-2019-5531VMware vSphere ESXi (6.7 prior to ESXi670-201810101-SG, 6.5 …5.4
- CVE-2019-5532VMware vCenter Server (6.7.x prior to 6.7 U3, 6.5 prior to 6…7.7
- CVE-2019-5533In VMware SD-WAN by VeloCloud versions 3.x prior to 3.3.0, t…4.3
Are you affected by CVE-2019-5526?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
