CVE-2024-37081
36Vexday Risk Score
Patch soon. It has a working public exploit.
ssvc Attendcvss 7.8epss 5.0%
from disclosure to weapon0 days
Published on NVDJun 18
metasploitJun 18
exploitation probability
5.0%top 9% of all CVEs
observed exploitation
nono source reports it
The vCenter Server contains multiple local privilege escalation vulnerabilities due to misconfiguration of sudo. An authenticated local user with non-administrative privileges may exploit these issues to elevate privileges to root on vCenter Server Appliance.
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H