🛡 CVE-2024-38813
VMware vCenter Server Privilege Escalation Vulnerability
VMware vCenter Server CWE-250 CWE-273
Ransomware use
—
CISA KEV
EPSS
17.4%
Elevated · 97th pct
Added to KEV
2024-11-20
CISA
Remediate by
2024-12-11
⚠ OVERDUE
CWE
CWE-250 CWE-273
weakness
📈 EPSS exploit probability
17.4%
FIRST EPSS — 30-day probability of exploitation in the wild · band Elevated · higher than 97% of all scored CVEs
⚠ KEV remediation overdue
CISA required federal remediation by 2024-12-11. This exploited vulnerability is past its Binding Operational Directive 22-01 due date — prioritize patch/mitigation and hunt for exploitation.
📄 Description
VMware vCenter contains an improper check for dropped privileges vulnerability. This vulnerability could allow an attacker with network access to the vCenter Server to escalate privileges to root by sending a specially crafted packet.
🔗 External references & OSINT
🔄 Internal pivots & actions
🛡 Add to case
🧩 Advanced Capabilities
Workstation · Copilot · AI Skills · Automation · Playbooks · Lookups · Docs · Reports
🤖 AI Copilot
⚡ AI Skills
🔍 Lookup & Enrich
📚 Docs & Reports
💡 Recommendations
- Explore related tools below
- Automate recurring work via cron