boxscore/security
CVE · referencelatest edition

Reference page — cumulative record through Sunday, October 4, 2026 UTC. Reference pages update as the archive grows; only dated daily editions are immutable pages of record.

CVE-2020-3950

n/a VMware Fusion, VMware Remote Console for Mac and Horizon Client for Mac — VMware Multiple Products
  AV  AC  PR  UI  S  C  I  A   CVSS    EPSS   %ile   KEV
   L   L   L   N  U  H  H  H    7.8   .0725   94.2   YES
AFFECTED
  Product                                                                  Versions                                                                                                                                                    Fixed
  VMware Fusion, VMware Remote Console for Mac and Horizon Client for Mac  VMware Fusion (11.x before 11.5.2), VMware Remote Console for Mac (11.x and prior before 11.0.1) and Horizon Client for Mac (5.x and prior before 5.4.0) –  —
TIMELINE
  Dec 30  Reserved by vmware
  Mar 17  Published (CNA: vmware)
  Nov 3   Added to CISA KEV, remediation due 2022-05-03
CWE-269 · CNA: vmware · CVSS v3.1 · 4 references · KEV due May 3, 2022

Description

VMware Fusion (11.x before 11.5.2), VMware Remote Console for Mac (11.x and prior before 11.0.1) and Horizon Client for Mac (5.x and prior before 5.4.0) contain a privilege escalation vulnerability due to improper use of setuid binaries. Successful exploitation of this issue may allow attackers with normal user privileges to escalate their privileges to root on the system where Fusion, VMRC or Horizon Client is installed.

Lifecycle

Complete event history — 3 events, chronological
DateEventDetail
December 30, 2019ReservedReserved by vmware
March 17, 2020PublishedPublished (CNA: vmware)
November 3, 2021KEV ADDEDAdded to CISA KEV, remediation due 2022-05-03

Affected

Affected products and packages — 1 row
VendorProduct / PackageEcosystemVersion introducedFixed
n/aVMware Fusion, VMware Remote Console for Mac and Horizon Client for Mac—VMware Fusion (11.x before 11.5.2), VMware Remote Console for Mac (11.x and prior before 11.0.1) and Horizon Client for Mac (5.x and prior before 5.4.0)—

Weaknesses

CWE-269

References (4)

Related

Authoritative record: CVE-2020-3950 at cve.org

Weaknesses: CWE-269

About this page

This is a reference page, not a dated page of record. It assembles the complete lifecycle of CVE-2020-3950 from the CVE Program record, NVD enrichment, the CISA KEV catalog, EPSS, and OSV advisories. The box score's numbers (CVSS, EPSS, KEV status) are current as of Sunday, October 4, 2026 UTC and are re-derived as the archive grows; only dated daily editions are immutable pages of record. The authoritative source for this identifier is cve.org.