logo

vCenter Flaw Exploited Just Five Days After Disclosure

ID: 6e9c369c-03ec-5b0b-8977-c908c05cec14

STIX ID: report--6e9c369c-03ec-5b0b-8977-c908c05cec14

Feed Name: Infosecurity Magazine (News)

Threat Score
82/100

Date Published: 2026-08-13

Date Updated: 2026-08-13

...
...

A critical VMware vCenter Syslog server directory traversal vulnerability (CVE-2026-59310, CVSS 9.8) was exploited in the wild within five days of Broadcom's advisory; incident responders at Quirso attributed the campaign to a suspected APT, observed 361 victim IPs across 47 countries, and found attackers deploying the open-source reverse_ssh reverse shell for persistence. Fixed vCenter releases are available, but organizations must both patch and actively evict pre-patch access.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.