← Back to browse · API

CVE-2024-38813

Severity
HIGH
CVSS
7.5
EPSS
0.17355
Risk score
61.07
CISA KEV
Yes
PoC
No
Published
2024-09-17
Modified
2025-10-21
First seen
2026-08-07
Aliases
EUVD-2024-37704, GHSA-66VJ-HXH5-X3JH
Products
VMware:VMware Cloud Foundation 4.x, VMware:VMware Cloud Foundation 5.x, VMware:vCenter Server, n/a:VMware vCenter Server 7.0 <7.0 U3s, n/a:VMware vCenter Server 8.0 <8.0 U3b
Sources
euvd EUVD-2024-37704
cisa.gov CVE-2024-38813

Description

The vCenter Server contains a privilege escalation vulnerability. A malicious actor with network access to vCenter Server may trigger this vulnerability to escalate privileges to root by sending a specially crafted network packet.

References