Tuesday, August 11, 2026
LIVEThe Unrelenting Cyber Battle: Hacking Threats and the Imperative of Robust Data Protection///Navigating the Cyber Labyrinth: Bolstering Defenses Against Evolving Hacking Threats///The Dual Front War: Battling Hacking and Bolstering Data Protection in the Digital Age///The Ever-Evolving Cyber Threat Landscape: Navigating Hacking and Fortifying Data Protection///The Unseen Battle: Fortifying Data in an Age of Relentless Hacking///The Unseen War: Hacking's Relentless Advance and the Imperative of Data Protection///The Evolving Threat Landscape: Hacking, Data Protection, and the Imperative for Proactive Security///Navigating the Digital Minefield: Bolstering Data Protection in an Era of Relentless Hacking///The Dual Fronts of Digital Defense: Combating Hacking and Fortifying Data Protection///Hacking's New Frontier: Fortifying Data Protection in the Age of Advanced Cyber Threats///The Dual Front: Navigating Hacking Threats and Fortifying Data Protection in the Digital Age///Navigating the Digital Gauntlet: The Evolving Nexus of Hacking and Data Protection///The Unrelenting Cyber Battle: Hacking Threats and the Imperative of Robust Data Protection///Navigating the Cyber Labyrinth: Bolstering Defenses Against Evolving Hacking Threats///The Dual Front War: Battling Hacking and Bolstering Data Protection in the Digital Age///The Ever-Evolving Cyber Threat Landscape: Navigating Hacking and Fortifying Data Protection///The Unseen Battle: Fortifying Data in an Age of Relentless Hacking///The Unseen War: Hacking's Relentless Advance and the Imperative of Data Protection///The Evolving Threat Landscape: Hacking, Data Protection, and the Imperative for Proactive Security///Navigating the Digital Minefield: Bolstering Data Protection in an Era of Relentless Hacking///The Dual Fronts of Digital Defense: Combating Hacking and Fortifying Data Protection///Hacking's New Frontier: Fortifying Data Protection in the Age of Advanced Cyber Threats///The Dual Front: Navigating Hacking Threats and Fortifying Data Protection in the Digital Age///Navigating the Digital Gauntlet: The Evolving Nexus of Hacking and Data Protection///
Subscribe
Cyber Security
Independent · Digital
Thehackingpost
CybersecurityAI-assisted

VMware Tools and Aria Operations Vulnerabilities Let Attackers Escalate Privileges to Root

VMware has released an advisory addressing three high-severity vulnerabilities affecting VMware Aria Operations, VMware Tools, VMware Cloud Foundation, VMware Telco Cloud Platform, and VMware Telco Cloud Infrastructure. The advisory was disclosed on Fri,…

VMware has released an advisory addressing three high-severity vulnerabilities affecting VMware Aria Operations, VMware Tools, VMware Cloud Foundation, VMware Telco Cloud Platform, and VMware Telco Cloud Infrastructure. The advisory was disclosed on Fri, Sep 29, 2025, and covers vulnerabilities CVE-2025-41244, CVE-2025-41245, and CVE-2025-41246, with CVSSv3 base scores ranging from 4.9 to 7.8.

Local Privilege Escalation Vulnerability (CVE-2025-41244)

CVE-2025-41244 is a local privilege escalation vulnerability impacting VMware Aria Operations (all 8.x versions), VMware Tools (12.x, 13.x), and VMware Cloud Foundation Operations. A local user with non-administrative privileges can exploit this vulnerability to escalate privileges to root. This issue has a CVSSv3 base score of 7.8. The resolution requires upgrading to the following fixed versions:

Aria Operations 8.18.5 VMware Tools 13.0.5.0 and 12.5.4 Cloud Foundation Operations 9.0.1.0

No workarounds are available for this vulnerability.

Information Disclosure and Improper Authorization Vulnerabilities

CVE-2025-41245 is an information disclosure vulnerability in VMware Aria Operations. It allows an attacker with non-administrative access to disclose other users’ credentials. This vulnerability has a CVSSv3 score of 4.9. Administrators should upgrade Aria Operations to version 8.18.5 or apply the KB92148 patch for earlier Cloud Foundation versions.

A local user with non-administrative privileges can exploit this vulnerability to escalate privileges to root.
Sean Avery · Thehackingpost

CVE-2025-41246 is an improper authorization vulnerability in VMware Tools for Windows (all 12.x and 13.x releases). An authenticated user could exploit this vulnerability to access other guest VMs if they know the target VM credentials. The CVSSv3 score for this vulnerability is 7.6. Remediation requires updating VMware Tools for Windows to version 13.0.5 or 12.5.4.

CVE ID Title CVSSv3.1 Score Severity

CVE-2025-41244 Local privilege escalation 7.8 Important

CVE-2025-41245 Information disclosure 4.9 Important

Advertisement

CVE-2025-41246 Improper authorization 7.6 Important

Broadcom credits Maxime Thiebaut (NVISO), Sven Nobis and Lorin Lehawany (ERNW), and Tom Jøran Sønstebyseter Rønning for reporting these issues. No workarounds exist for these vulnerabilities, and all affected environments should apply the patches immediately as issued by Broadcom.

Administrators without patching capability can temporarily restrict local VM user privileges and limit access to Aria Operations consoles. For more information, visit the official Broadcom advisory .

Based on reporting by Cyber Security News.

AI transparency. This article was produced with the assistance of artificial intelligence and published under human editorial oversight. AI systems can make mistakes. Read how we use AI (EU AI Act, Art. 50).
Related Stories