CVE-2024-37081: High severity vmware vcenter vulnerability
The vCenter Server contains multiple local privilege escalation vulnerabilities due to misconfiguration of sudo. An authenticated local user with non-administrative privileges may exploit these issues to elevate privileges to root on vCenter Server Appliance.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2024-37081?
CVE-2024-37081 is classified as a critical vulnerability due to local privilege escalation risks.
How do I fix CVE-2024-37081?
To fix CVE-2024-37081, update your vCenter Server to the latest version provided by VMware.
Who is affected by CVE-2024-37081?
CVE-2024-37081 affects authenticated local users with non-administrative privileges on the vCenter Server Appliance.
What are the potential impacts of CVE-2024-37081?
The potential impact of CVE-2024-37081 includes unauthorized root access, which can lead to complete system compromise.
Can CVE-2024-37081 be exploited remotely?
No, CVE-2024-37081 can only be exploited by local users with access to the vCenter Server.