logo

CISA Flags Actively Exploited VMware vCenter RCE Flaw in KEV Catalog

ID: 1ba05fc4-b36f-50f5-bf4e-bbf311fda065

STIX ID: report--1ba05fc4-b36f-50f5-bf4e-bbf311fda065

Feed Name: The Cyber Express

Threat Score
90/100

Date Published: 2026-01-27

Date Updated: 2026-04-23

Author: Ashish Khaitan

...
...

**CVE-2024-37079 (VMware vCenter RCE, CVSS 9.8) added to CISA KEV:** A critical heap-overflow in the DCE/RPC implementation of VMware vCenter Server allows unauthenticated remote code execution; affected vCenter 8.0 (before U2d/U1e), 7.0 (before U3r), and VMware Cloud Foundation builds. VMware advisory VMSA-2024-0012 (updated VMSA-2024-0012.1) and CISA note active exploitation in the wild; patches are available and no in-product workarounds were identified.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.