Lucene search

K
hiveproHiveForce LabsHIVEPRO:820945D6FEAA3320CEBDDE15016F276E
HistoryOct 27, 2023 - 1:16 p.m.

Vmware vCenter Flaws Leading to RCE Attacks

2023-10-2713:16:58
HiveForce Labs
www.hivepro.com
37
vmware
rce
flaws
cve-2023-34048
cve-2023-34056
remote code execution
information disclosure

0.044 Low

EPSS

Percentile

92.4%

Threat Level Vulnerability Report For a detailed threat advisory, download the pdf file here Summary Two vulnerabilities, CVE-2023-34048 and CVE-2023-34056, were identified in VMware vCenter Server, a server management software used for centralized management of virtual machines and ESXi hosts. CVE-2023-34048 is associated with an Out-of-Bounds Write issue, while CVE-2023-34056 is linked to Partial Information Disclosure. These vulnerabilities could allow an attacker to execute remote code and gain unauthorized access to sensitive information. To receive real-time threat advisories, please follow HiveForce Labs on LinkedIn.

0.044 Low

EPSS

Percentile

92.4%