CVE-2024-38813: VMware vCenter Server Privilege Escalation Vulnerability
The vCenter Server contains a privilege escalation vulnerability. A malicious actor with network access to vCenter Server may trigger this vulnerability to escalate privileges to root by sending a specially crafted network packet.
Other sources
VMware vCenter contains an improper check for dropped privileges vulnerability. This vulnerability could allow an attacker with network access to the vCenter Server to escalate privileges to root by sending a specially crafted packet.
— CISA
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Compensating control
Discontinue use of VMware vCenter Server if vendor-provided mitigations are unavailable (stop running or otherwise take the product out of service) to avoid exposure to the privilege escalation vulnerability.
Event History
Peer vulnerabilities
Found alongside the following vulnerabilities.
Frequently Asked Questions
What is the severity of CVE-2024-38813?
CVE-2024-38813 has been classified with a critical severity level due to its potential for privilege escalation.
How do I fix CVE-2024-38813?
To fix CVE-2024-38813, apply the latest security updates provided by VMware for vCenter Server.
Who is affected by CVE-2024-38813?
CVE-2024-38813 affects VMware vCenter Server versions 7.0 and 8.0 and their respective updates.
What type of vulnerability is CVE-2024-38813?
CVE-2024-38813 is a privilege escalation vulnerability that allows attackers to gain elevated permissions.
What are the potential impacts of CVE-2024-38813?
The potential impacts of CVE-2024-38813 include unauthorized access to sensitive system settings and data.