Multiples vulnérabilités dans les produits VMware (04 septembre 2026)
Multiple vulnerabilities have been discovered in VMware products, allowing attackers to execute arbitrary code remotely. These flaws could lead to significant system compromise and data breaches. VMware has released security advisories with patches to address these issues.
Multiple vulnerabilities have been discovered within VMware products, presenting a serious risk of remote code execution. These flaws could be exploited to gain unauthorized access and control over vulnerable systems.
What happened
VMware has identified several security weaknesses that could be leveraged to execute code remotely on affected systems. The vulnerabilities allow attackers to potentially compromise systems without requiring local access. The security advisory highlights the need for immediate action to mitigate these risks.
Technical details
- Vulnerability Type: Remote Code Execution
- Affected Products: VMware Fusion versions prior to 26H1u1, VMware Workstation versions prior to 26H1u1
- CVE Identifiers: CVE-2026-59346, CVE-2026-59347
- CVSS Score: Not specified
Impact
Successful exploitation of these vulnerabilities could lead to complete system compromise, allowing attackers to install malware, steal sensitive data, or disrupt operations. The potential impact is significant, particularly for organizations relying on VMware products for virtualization and remote access.
What to do
- Refer to the VMware Security Advisory for detailed instructions on applying the necessary patches: https://support.broadcom.com/web/ecx/support-content-notification/-/external/content/SecurityAdvisories/0/38288
Why it matters
This vulnerability highlights the ongoing importance of maintaining up-to-date software and promptly applying security patches. The widespread use of VMware products means that a successful exploit could have a broad impact across numerous organizations and industries.