CVE-2024-38813CISA KEVEPSS p96.2%

CVE-2024-38813VMware vCenter Server Privilege Escalation Vulnerability

VMware / vCenter Server

Description

VMware vCenter contains an improper check for dropped privileges vulnerability. This vulnerability could allow an attacker with network access to the vCenter Server to escalate privileges to root by sending a specially crafted packet.

Scoring

EPSS14.62% probability of exploitation · percentile 96.2% · 2026-06-18T12:00:27Z

CISA KEV entry

Added to KEV: 2024-11-20

(incoming)1

TypeTargetConfidenceTier
KEVEntryVMware vCenter Server Privilege Escalation Vulnerabilitykev-cve-2024-388130%live

Related by meaning· 6

Nearest entities by semantic similarity across the cs-graph corpus.

CVE
VMware vCenter Server Heap-Based Buffer Overflow Vulnerability
CVE
VMware vCenter Server Incorrect Default File Permissions Vulnerability
CVE
VMware vCenter Server Remote Code Execution Vulnerability
CVE
VMware vCenter Server Out-of-Bounds Write Vulnerability
CVE
VMware Tools Authentication Bypass Vulnerability
CVE
Broadcom VMware vCenter Server Out-of-bounds Write Vulnerability
Sourced from NVD + CISA KEV + FIRST.org EPSS. Curated for EU compliance use cases by Adam Lundqvist, Founder at SQUR.