Threat Actors Chaining Unpatched VMware Vulnerabilities for Full System Control¶
Cybersecurity and Infrastructure Security Agency (CISA). (2022). Threat Actors Chaining Unpatched VMware Vulnerabilities for Full System Control.
Cited by¶
1 citation across 1 artifact.
Each citation links to the sentence it supports in the citing article.
Primes¶
- Conjunctive Path Activation
- In security, exploit chains weaponize a sequence of individually non-exploitable vulnerabilities when the AND of their presence, reachability, and input format realizes.
This sourceDocuments an exploit chain in which CVE-2022-22954 and CVE-2022-22960 are weaponized in combination — individually limited vulnerabilities that, only when co-present and chained, yield full system control, the AND-across-vulnerabilities structure.
- In security, exploit chains weaponize a sequence of individually non-exploitable vulnerabilities when the AND of their presence, reachability, and input format realizes.
Verification¶
This reference passed the adversarial substantiation pipeline: it was checked to exist and to support the claim it is attached to. See how references were verified.
Registry ID ref:b21de1b00112 · see in the full table