CVE-2024-37081

The vCenter Server contains multiple local privilege escalation vulnerabilities due to misconfiguration of sudo. An authenticated local user with non-administrative privileges may exploit these issues to elevate privileges to root on vCenter Server Appliance.
Configurations

No configuration.

History

21 Nov 2024, 09:23

Type Values Removed Values Added
References () https://support.broadcom.com/web/ecx/support-content-notification/-/external/content/SecurityAdvisories/0/24453 - () https://support.broadcom.com/web/ecx/support-content-notification/-/external/content/SecurityAdvisories/0/24453 -

03 Jul 2024, 02:04

Type Values Removed Values Added
CWE CWE-556

20 Jun 2024, 12:44

Type Values Removed Values Added
Summary
  • (es) vCenter Server contiene múltiples vulnerabilidades de escalada de privilegios locales debido a una mala configuración de sudo. Un usuario local autenticado con privilegios no administrativos puede aprovechar estos problemas para elevar los privilegios a root en vCenter Server Appliance.

18 Jun 2024, 06:15

Type Values Removed Values Added
New CVE

Information

Published : 2024-06-18 06:15

Updated : 2024-11-21 09:23


NVD link : CVE-2024-37081

Mitre link : CVE-2024-37081

CVE.ORG link : CVE-2024-37081


JSON object : View

Products Affected

No product.

CWE
CWE-556

ASP.NET Misconfiguration: Use of Identity Impersonation