CriticalCVECISA — Known Exploited Vulnerabilities· 4 Mar 2025

CVE-2025-22225 — VMware ESXi Arbitrary Write Vulnerability

Severity: Critical · Kind: Vulnerability

What it is

AI offline placeholder summary for: Title: CVE-2025-22225 — VMware ESXi Arbitrary Write Vulnerability Kind: Vulnerab.

Who this affects

AI summarisation is currently disabled — see the source link for the full upstream advisory.

What to do

Re-run summarisation from /admin/threats once ANTHROPIC_API_KEY is configured.

From the source

VMware ESXi. VMware ESXi contains an arbitrary write vulnerability. Successful exploitation allows an attacker with privileges within the VMX process to trigger an arbitrary kernel write leading to an escape of the sandbox. Required action: Apply mitigations per vendor instructions, follow applicable BOD 22-01 guidance for cloud services, or discontinue use of the product if mitigations are unavailable.

Vulnerability facts

CVE
CVE-2025-22225
On CISA KEV since
2025-03-04
Ransomware use
Known

Was this useful?

00000Sign in to react

Plain-English summaries are AI-generated and reviewed for tone, not technical accuracy. For incident response, always rely on the original source linked above.