top of page

Insights from the Field
Security analysis, platform hardening strategies, and lessons learned from real-world assessments.


VMware Security Alert: Insecure File Handling in VMware Tools (CVE-2025-22247)
Introduction Broadcom has issued a moderate-severity security advisory, VMSA-2025-0007, addressing a newly disclosed vulnerability in VMware Tools identified as CVE-2025-22247. This vulnerability affects both Windows and Linux guest operating systems and introduces a risk scenario where a non-privileged user inside a virtual machine could tamper with file operations carried out by VMware Tools. Although this flaw is not exploitable for guest-to-host escape, it may allow local

Demetrios Mustakas Jr.
May 12, 2025


VMware Security Alert: DOM-Based Cross-Site Scripting in Aria Automation (CVE-2025-22249)
Introduction Broadcom has published VMSA-2025-0008 to address a newly disclosed DOM-based Cross-Site Scripting (XSS) vulnerability in VMware Aria Automation, previously known as vRealize Automation. The issue is tracked as CVE-2025-22249 and has been assigned a CVSSv3 base score of 8.2 (Important severity). This client-side scripting flaw could allow an attacker to steal access tokens or session identifiers from authenticated users by tricking them into visiting a specially c

Demetrios Mustakas Jr.
May 12, 2025
bottom of page
