CVE-2025-22225HIGH 8.2CISA KEVEPSS p57.0%
CVE-2025-22225VMware ESXi Arbitrary Write Vulnerability
VMware / ESXi
Description
VMware ESXi contains an arbitrary write vulnerability. Successful exploitation allows an attacker with privileges within the VMX process to trigger an arbitrary kernel write leading to an escape of the sandbox.
Scoring
| CVSS 3.1 | 8.2 (HIGH) |
| Vector | CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:C/C:H/I:H/A:H |
| EPSS | 0.96% probability of exploitation · percentile 57.0% · 2026-06-19T12:03:05Z |
| Published | 2025-03-04 |
| Last modified | 2025-10-30 |
CISA KEV entry
Added to KEV: 2025-03-04
Underlying weaknesses· 2
References
2
| Type | Target | Confidence | Tier |
|---|---|---|---|
| Weakness | Write-what-where Conditioncwe-123 | 0% | live |
| Weakness | Out-of-bounds Writecwe-787 | 0% | live |
(incoming)1
| Type | Target | Confidence | Tier |
|---|---|---|---|
| KEVEntry | VMware ESXi Arbitrary Write Vulnerabilitykev-cve-2025-22225 | 0% | live |
Related by meaning· 6
Nearest entities by semantic similarity across the cs-graph corpus.