VDB

CVE-2024-37081

CVE-2024-37081 PUBLISHED

------------ On June 17, 2024 VMware released a critical security advisory, VMSA-2024-0012, addressing security vulnerabilities found and resolved in VMware vCenter Server, which is present in VMware vSphere and VMware Cloud Foundation products. The VMSA will always be the source of truth for what products & versions are affected, the workarounds, and proper patches to keep your organization secure. This document is a corollary to the advisory and includes self-service information to help you and your organization decide how to respond. These vulnerabilities are memory management and corruption issues which can be used against VMware vCenter Server services, potentially allowing remote code execution.

EPSS 49.87% · 97.9th percentile

Risk Scores

EPSS Score
49.87%
97.9th percentile

Timeline

  • Jun 17, 2023 CVE Published
  • Jun 18, 2024 EPSS Score
  • Jun 19, 2024 PoC Published
  • Aug 28, 2024 PoC Published
  • Oct 4, 2024 Coalition ESS Score
  • Mar 14, 2025 PoC Published
  • Mar 20, 2025 EPSS Score
  • Mar 23, 2025 EPSS Score
  • Mar 28, 2025 EPSS Score
  • Mar 29, 2025 EPSS Score
  • Apr 2, 2025 EPSS Score
  • Apr 3, 2025 EPSS Score
Open in Interactive Console →
$ Console Community · 100/wk Open console ›