Vulnerability Intelligence

🛡 CVE-2024-38813

VMware vCenter Server Privilege Escalation Vulnerability
VMware vCenter Server CWE-250 CWE-273

Ransomware use

CISA KEV

EPSS

17.4%
Elevated · 97th pct

Added to KEV

2024-11-20
CISA

Remediate by

2024-12-11
⚠ OVERDUE

CWE

CWE-250 CWE-273
weakness

📈 EPSS exploit probability

17.4%
FIRST EPSS — 30-day probability of exploitation in the wild · band Elevated · higher than 97% of all scored CVEs

⚠ KEV remediation overdue

CISA required federal remediation by 2024-12-11. This exploited vulnerability is past its Binding Operational Directive 22-01 due date — prioritize patch/mitigation and hunt for exploitation.

📄 Description

VMware vCenter contains an improper check for dropped privileges vulnerability. This vulnerability could allow an attacker with network access to the vCenter Server to escalate privileges to root by sending a specially crafted packet.

🛡 Add to case

Attach CVE-2024-38813 (Vulnerability / CVE) and pull all linked entities:
Workstation · Copilot · AI Skills · Automation · Playbooks · Lookups · Docs · Reports

🤖 AI Copilot

🔍 Lookup & Enrich

💡 Recommendations

⚙ Automation

Cron: 0 * * * * php /home/zaptf0zdggll/public_html/threats/cron.php